There is 1 open security issue in trixie.
1 issue left for the package maintainer to handle:
- CVE-2025-69412:
(needs triaging)
KDE messagelib before 25.11.90 ignores SSL errors for threatMatches:find in the Google Safe Browsing Lookup API (aka phishing API), which might allow spoofing of threat data. NOTE: this Lookup API is not contacted in the messagelib default configuration.
You can find information about how to handle this issue in the security team's documentation.