State-Sponsored Hackers Actively Exploiting Critical Email Security Flaw to Execute Remote Commands
State-sponsored hackers have actively exploited CVE-2025-59689, a command injection vulnerability in Libraesva Email Security Gateway systems. The flaw allows attackers to execute unauthorized commands through malicious compressed email attachments, affecting ESG versions 4.5 through 5.5.x...
