Apache Tika Toolkit Faces Critical 10.0-Rated Vulnerability
Article Content
Browse articles
The Apache Foundation has issued a warning regarding a critical 10.0-rated vulnerability in its Tika toolkit, which is used for metadata extraction from over 1,000 file formats. This follows a previously reported 8.4-rated flaw (CVE-2025-54988) that allowed XML External Entity injection via crafted XFA files in PDFs. The new vulnerability is identified as CVE-2025-66516.
Ask AI about this cluster
Answers cite the sources they use
Updated 182d ago How this analysis works
More articles in this cluster (2)
Following this threat?
Track Pegasus, Apache Foundation and CVE-2025-54988 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Apple Alerts Users of Targeted Mercenary Spyware Attacks in 110 Countries On August 13, 2026, Apple issued threat notifications to users in 110 countries, warning them of potential mercenary spyware attacks targeting their iPhones, iPads, or Macs. This marks a significant update in Apple's security measures, as the alerts now appear directly on users' lock screens. The notifications inform…
Serbian Activists Targeted by Advanced Spyware Ahead of Elections Since December 2025, at least 14 individuals in Serbia, including student activists and opposition politicians, have been targeted with advanced spyware, marking the largest documented wave of such surveillance in the country. The attacks coincide with local elections held on March 29, 2026, and are linked to the use…