A significant security vulnerability has been identified in IBM Aspera Faspex 5, a popular file exchange solution.
The flaw, designated as CVE-2025-3423, allows attackers to inject malicious JavaScript into the web interface, potentially compromising sensitive user data.
https://gbhackers.com/ibm-aspera-faspex-flaw/