OPNsense has released hotfix version **25.10.2_10**, addressing important security and performance improvements.
This update includes:
– A fix to properly escape LDAP usernames during search, addressing a reported security issue (CVE reference available).
– An enhancement to Unbound, limiting DuckDB to a single thread in write mode to significantly reduce logger memory usage.
These refinements reflect OPNsense’s continued commitment to proactive security and system stability.
Full release details:
https://forum.opnsense.org/index.php?topic=50819.msg264753#msg264753
