CVE-2025-29998 — This vulnerability exists in the CAP back office application due to missing rate limiting on OTP requests in an API endpoint. An authenticated remote attacker could exploit this vulnerability by sendi — CVE Database · The Intelligence Room