SECURITY UPDATE: HTTP::Tiny does not verify TLS certificates by default
debian/patches/CVE-2023-31486.patch: flip verifySSL default from 0
to 1 in cpan/HTTP-Tiny/lib/HTTP/Tiny.pm; add
PERLHTTPTINYSSLINSECUREBYDEFAULT escape-hatch env var; update
POD (SSL SUPPORT -> TLS/SSL SUPPORT, machine-in-the-middle, extra
CA search paths); add offline regression test
cpan/HTTP-Tiny/t/180verify_SSL.t.