Security News FreePBX Authentication Bypass Exposed via Misconfigured Webserver AUTHTYPE TheHackerNews Daniel Bender 15 Dec 2025 FreePBX patched 2025 flaws allowing SQL injection, file upload attacks, and an auth bypass only when webserver AUTHTYPE was enabled.