The bug is tracked as CVE-2025-61882, and was given a severity score of 9.8/10 (critical). An unauthenticated attacker with HTTP network access could use it to compromise, and fully take over, the ...