Skip to content

CVE-2025-11837

CVE

Threat entity extracted from intelligence sources

Frequency
4
occurrences
First Seen
November 7, 2025
Last Seen
June 22, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

The AryStinger botnet has infected more than 4,300 D-Link routers, specifically the DIR-850L and DIR-818LW models, which are no longer supported by the manufacturer. This malware, identified by researchers at Qianxin's XLab, converts compromised devices into reconnaissance tools that can perform sca...

QNAP has released security updates addressing seven critical zero-day vulnerabilities in its NAS systems, discovered during the Pwn2Own Ireland 2025 competition. The flaws affect QTS, QuTS hero, and several QNAP applications, with firmware updates now available to mitigate the risks associated with...

QNAP has released security updates addressing seven zero-day vulnerabilities in its NAS systems, including QTS and QuTS hero, as well as several applications. These vulnerabilities were exploited during the Pwn2Own Ireland 2025 competition, with specific CVE entries identified for each flaw. Users a...

Public Exploits

Checking GitHub for proof-of-concept code…