
CVE-2025-66487 IBM Aspera Shares 1.9.9 through 1.11.0 does not properly rate limit the frequency that an authenticated user can send emails, which could result in email flooding or … https://www.cve.org/CVERecord?id=CVE-2025-66487
Post summary
The post announces that IBM Aspera Shares versions 1.9.9‑1.11.0 lack proper rate limiting for authenticated email sending, increasing the risk of email flooding, with no mention of PoC, exploit, patch, or active use.
