NVD disclosure day

Published threat advisories for December 16, 2025

CVE advisoryCRITICAL

CVE-2025-65319

Blue Mail Attachment Handling Weakness Bypasses Windows File Protections

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

Blue Mail versions 1.140.103 and below have a vulnerability where attachments are saved without a Mark-of-the-Web tag, potentially bypassing Windows and other software protections. This could allow attackers to execute malicious files by tricking users into downloading attachments.

CVE advisoryCRITICAL

CVE-2025-65318

Canary Mail Attachment Handling Bypass Windows File Protection

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

Canary Mail's attachment handling can bypass Windows file protections by saving documents without a Mark-of-the-Web tag. This vulnerability could allow attackers to execute malicious files on a user's system if they interact with a specially crafted attachment. The potential for unauthorized data access or system compr