aerc before 93bec0d allows directory traversal in commands/msgview/open.go because of direct path concatenation of the name of an attachment part,
{ "binaries": [ { "binary_name": "aerc", "binary_version": "0.8.2-1ubuntu0.3+esm2" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-49466.json"
{ "binaries": [ { "binary_name": "aerc", "binary_version": "0.17.0-1ubuntu0.24.04.3" } ] }
{ "binaries": [ { "binary_name": "aerc", "binary_version": "0.20.0-2" } ] }