This week’s release introduces new detections for CVE-2025-68645 and CVE-2025-31125.
Key Findings
- CVE-2025-68645: A Local File Inclusion (LFI) vulnerability in the Webmail Classic UI of Zimbra Collaboration Suite (ZCS) 10.0 and 10.1 allows unauthenticated remote attackers to craft requests to the
/h/restendpoint, improperly influence internal dispatching, and include arbitrary files from the WebRoot directory. - CVE-2025-31125: Vite, the JavaScript frontend tooling framework, exposes content of non-allowed files via
?inline&importwhen its development server is network-exposed, enabling unauthorized attackers to read arbitrary files and potentially leak sensitive information.
| Ruleset | Rule ID | Legacy Rule ID | Description | Previous Action | New Action | Comments |
|---|---|---|---|---|---|---|
| Cloudflare Managed Ruleset | 695d76ff756844d384cab548833761f7 | N/A | Zimbra – Local File Inclusion – CVE:CVE-2025-68645 | Log | Block | This is a new detection. |
| Cloudflare Managed Ruleset | 38fff9f3deba46a2abc10a8f950ed8c8 | N/A | Vite – WASM Import Path Traversal – CVE:CVE-2025-31125 | Log | Block | This is a new detection. |
Source: Cloudflare
Latest Posts
- Dynamics 365 Customer Service – Quality Evaluation Agent for Bulk Case Evaluation [MC1234588]
![Dynamics 365 Customer Service - Quality Evaluation Agent for Bulk Case Evaluation [MC1234588] 2 metro station 3714290 1920](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- (Updated) Microsoft Teams admin center: App centric management for app installation and changes to app setup policies [MC795355]
![(Updated) Microsoft Teams admin center: App centric management for app installation and changes to app setup policies [MC795355] 3 pexels pixabay 159868](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- (Update)Microsoft 365 and Microsoft Teams: Unified management of Teams apps in Teams, Outlook, and the Microsoft 365 app [MC796790]
![(Update)Microsoft 365 and Microsoft Teams: Unified management of Teams apps in Teams, Outlook, and the Microsoft 365 app [MC796790] 4 labyrinth 3207078 1920](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- (Updated) Microsoft Purview: Role management update [MC1199765]
![(Updated) Microsoft Purview: Role management update [MC1199765] 5 pexels visit greenland 108649 360912](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)

![Dynamics 365 Customer Service - Quality Evaluation Agent for Bulk Case Evaluation [MC1234588] 2 metro station 3714290 1920](https://mwpro.co.uk/wp-content/uploads/2025/06/metro-station-3714290_1920-150x150.webp)
![(Updated) Microsoft Teams admin center: App centric management for app installation and changes to app setup policies [MC795355] 3 pexels pixabay 159868](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-pixabay-159868-150x150.webp)
![(Update)Microsoft 365 and Microsoft Teams: Unified management of Teams apps in Teams, Outlook, and the Microsoft 365 app [MC796790] 4 labyrinth 3207078 1920](https://mwpro.co.uk/wp-content/uploads/2025/06/labyrinth-3207078_1920-150x150.webp)
![(Updated) Microsoft Purview: Role management update [MC1199765] 5 pexels visit greenland 108649 360912](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-visit-greenland-108649-360912-150x150.webp)
