CVE-2025-60805
High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.
An issue was discovered in BESSystem BES Application Server thru 9.5.x allowing unauthorized attackers to gain sensitive information via the "pre-resource" option in bes-web.xml.
Published 2025-10-28. Last modified 2026-07-05.