Escape points its Cascade AI pentesting solution at a Spring + JSP customer portal, where it uncovers two critical findings, including an unauthenticated remote code execution vulnerability, that are typically hard for traditional DAST tools to catch.