Back to Database
Status published
Medium
CVE-2025-66270
The KDE Connect protocol 8 before 2025-11-28 does not correlate...
Vulnerability Description
The KDE Connect protocol 8 before 2025-11-28 does not correlate device IDs across two packets. This affects KDE Connect before 25.12 on desktop, KDE Connect before 0.5.4 on iOS, KDE Connect before 1.34.4 on Android, GSConnect before 68, and Valent before 1.0.0.alpha.49.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-66270
Credits & Attribution
No credits recorded in the NVD database.
References
- https://invent.kde.org/network/kdeconnect-kde/-/commit/4e53bcdd5d4c28bd9fefd114b807ce35d7b3373e
- https://invent.kde.org/network/kdeconnect-android/-/commit/675d2d24a1eb95d15d9e5bde2b7e2271d5ada6a9
- https://invent.kde.org/network/kdeconnect-ios/-/commit/6c003c22d04270cabc4b262d399c753d55cf9080
- https://github.com/GSConnect/gnome-shell-extension-gsconnect/commit/a38246deec0af50ae218cdc51db32cdd7eb145e3
- https://github.com/andyholmes/valent/commit/85f773124a67ed1add79e7465bb088ec667cccce
- https://kde.org/info/security/advisory-20251128-1.txt
More from KDE
View All →CVE-2025-69412
KDE messagelib before 25.11.90 ignores SSL errors for threatMatches:find in...
Low
3.4
CVE-2025-59820
In KDE Krita before 5.2.13, loading a manipulated TGA file...
Medium
6.7
CVE-2025-55174
In KDE Skanpage before 25.08.0, an attempt at file overwrite...
Low
3.2
CVE-2025-49091
KDE Konsole before 25.04.2 allows remote code execution in a...
High
8.2
CVE-2025-32901
In KDE Connect before 1.33.0 on Android, malicious device IDs...
Medium
4.3
Affected Vendor
Affected Software
KDE Connect protocol
Vulnerable Versions:
8
Timeline
Official Publish:
December 5th, 2025
Last Modified:
December 5th, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N