
Update: http://Cybersecuritynews.com reports two additional critical vulnerabilities not previously detailed in coverage of the Webmin patch cycle: CVE-2025-67738 (command execution via the Squid module) and CVE-2025-61541 (host header injection in password r… https://ift.tt/Ijd0mDX
Post summary
The update announces two additional critical Webmin vulnerabilities—CVE-2025-67738 (command execution through the Squid module) and CVE-2025-61541 (host header injection in password handling)—without providing PoCs, exploit details, or patches.
