https://seclists.org/oss-sec/2025/q4/97: CVE-2025-30189: Dovecot IMAP Server: Using auth caching causes the first lookup to be cached for all lookups
Published Oct 29, 2025
·Updated
Affected Software
1 affected component
Dovecot IMAP Server>=2.4.0<2.4.1
Frequently Asked Questions
1
What is the severity of CVE-2025-30189?
CVE-2025-30189 is classified as a medium severity vulnerability.
2
How do I fix CVE-2025-30189?
To fix CVE-2025-30189, you should upgrade to the latest version of Dovecot IMAP Server where this issue is resolved.
3
What does CVE-2025-30189 affect?
CVE-2025-30189 affects the Dovecot IMAP Server's authentication caching mechanism.
4
What is the potential impact of CVE-2025-30189?
The potential impact of CVE-2025-30189 is that the first user authentication lookup may be improperly cached, influencing subsequent lookups.
5
When was CVE-2025-30189 published?
CVE-2025-30189 was published on October 29, 2025.