Security News Critical Apache Roller Vulnerability (CVSS 10.0) Enables Unauthorized Session Persistence TheHackerNews Daniel Bender 15 Apr 2025 Apache Roller flaw CVE-2025-24859 keeps sessions active after password changes, risking persistent access.