Two critical vulnerabilities (CVE-2025-25291 and CVE-2025-25292) in the ruby-saml library could allow attackers to impersonate users and execute account takeover attacks. These flaws arise from differences in parsing XML with REXML and Nokogiri. Organizations must update to ruby-saml version 1.18.0 to mitigate these risks effectively.

Thousands of healthcare records exposed online, including private patient information
An exposed database reportedly belonging to ESHYFT, a US tech platform for nurses, has been secured following the discovery by a cybersecurity researcher. Jeremiah Fowler