Praetorian[verified]@praetorianlabsDisclosure
The post announces two newly disclosed CVEs affecting Fabio and OAuth2‑proxy, detailing the core vulnerabilities but providing no evidence of active exploitation, patches, or PoC scripts.
Praetorian[verified]@praetorianlabsDisclosure
The post announces two newly disclosed CVEs, outlining how specific HTTP header manipulations can bypass access controls in Fabio and OAuth2-proxy.
CVE Brief[verified]@DailyCVEBriefDisclosure
The tweet highlights a new CVE-2025-64484 caused by oauth2-proxy's inconsistent handling of X-Forwarded-User headers, referencing an earlier published technique.
CVE Brief[verified]@DailyCVEBriefDisclosure
The tweet provides a high‑level disclosure of CVE‑2025‑64484, noting its 8.5 severity score, CISA’s no‑exploitation assessment, and a historical commit context, but offers no details on exploitation, patches, or technical aspects.
Aviatrix Threat Research Center[verified]@aviatrixtrcActive Exploitation
The post reports that CVE‑2025‑48865 and CVE‑2025‑64484 are being actively exploited via reverse‑proxy header manipulation to bypass authentication and enable lateral movement within compromised networks.
Vivek | Cybersecurity[verified]@VivekIntelDisclosure
The post discloses that CVE‑2025‑48865 and CVE‑2025‑64484 enable authentication bypass and privilege escalation via HTTP header manipulation between reverse proxies and backend applications.