CVE-2025-36857 — Rapid7 Appspider Pro versions below 7.5.021, suffer from a broken access control vulnerability in the application's configuration file loading mechanism, whereby an attacker can place files in dir — CVE Database · The Intelligence Room