logo

Apache warns of 10.0-rated flaw in Tika metadata ingestion tool

ID: 0fcffb83-c957-548b-bb40-4407f647fae8

STIX ID: report--0fcffb83-c957-548b-bb40-4407f647fae8

Feed Name: The Register (Security)

Threat Score
75/100

Date Published: 2025-12-08

Date Updated: 2026-04-26

Author: Brandon Vigliarolo and Simon Sharwood

...
...

Infosec in Brief summarizes several active security concerns: a critical 10.0-rated Apache Tika vulnerability (CVE-2025-66516) that affects widely used parsing components and may have supply-chain impact; large-scale DDoS activity (15–16 Tbps) observed from the Americas prompting OVH to expand mitigation capacity; continued operation and adaptation of the Predator spyware vendor Intellexa, linked to multiple zero-day discoveries; and a DOJ seizure of a fake cryptocurrency investment site used in pig-butchering scams.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.