Security Advisory

CVE-2025-65319

9.1
CRITICAL

Vulnerability Description

When using the attachment interaction functionality, Blue Mail 1.140.103 and below saves documents to a file system without a Mark-of-the-Web tag, which allows attackers to bypass the built-in file protection mechanisms of both Windows OS and third-party software.
Published Date December 16, 2025
Official Source NIST NVD Advisory