A critical security flaw in Apache Camel (CVE-2025-27636) allows attackers to execute arbitrary commands via case-sensitive header injection in versions 4.10.0-4.10.1, 4.8.0-4.8.4, and 3.10.0-3.22.3. This vulnerability enables remote code execution by manipulating HTTP headers, prompting immediate remediation through upgrades and enhanced header filtering. Active exploitation observed in Kubernetes environments highlights broader risks.

IXON VPN Vulnerabilities Let Attackers Gain Access to Windows & Linux Systems
A security assessment by Shelltrail revealed three critical vulnerabilities in the IXON VPN client, allowing privilege escalation on Windows and Linux. Identified as CVE-2025-ZZZ-01, CVE-2025-ZZZ-02,