Unpatched XWiki Servers Exploited by RCE Flaw for Global Cryptomining Botnet
The critical CVE-2025-24893 eval injection flaw enables unauthenticated remote code execution, weaponizing enterprise infrastructure for illicit cryptomining and DDoS botnets.
