Open Source Security mailing list@oss_securityDisclosure
Both CVEs, identified as low severity, are disclosed via an OpenWall mailing list with technical details but no PoC, exploit code, active exploitation reports, or patch information.
PulsePatch.io@pulsepatchioDisclosure
CVE-2025-57735 exposes an auth bypass in Apache Airflow where JWT tokens stay valid after logout, creating a risk of unauthorized access.
CVEarity@CVEarityGeneral
The tweet announces the existence of CVE-2025-57735 with minimal details, providing only a reference link to the NVD entry and no additional technical or mitigation information.
Infoflowcloud@infoflowcloudDisclosure
The tweet announces CVE‑2025‑57735, noting that JWT tokens remain valid after logout, potentially enabling token reuse.
CVE@CVEnewDisclosure
The CVE-2025-57735 vulnerability describes a scenario where a JWT token remains valid after logout, permitting reuse if intercepted. No PoC, exploit, active use, or patch is mentioned.
CyberDudeBivash® | Global Cybersecurity Company@cyberbivashDisclosure
The tweet discloses CVE‑2025‑57735, noting that Airflow logout fails to invalidate JWT tokens, without providing exploits, patches, or evidence of active exploitation.