8 April 2025 - CVE-2025-31672 - Improper Input Validation vulnerability in Apache POI before 5.4.0 While parsing of OOXML format files like xlsx, docx and pptx, a specially crafted file could be used to provide multiple entries with the same name in the zip-compressed file-format. Products reading the affected file could read different data because one of the zip entries with the duplicate name is