CVE-2025-14847 is a vulnerability tracked across 13 threat clusters and 23 intelligence report mentions on ThreatCluster. First observed December 23, 2025; most recent activity July 1, 2026.
A coordinated supply chain attack has been identified, targeting vulnerability researchers and penetration testers through malicious proof-of-concept (PoC) repositories on GitHub. The malware, named ChocoPoC, is a…
The MongoBleed vulnerability, tracked as CVE-2025-14847 with a CVSS score of 8.7, is currently under active exploitation. Over 87,000 potentially vulnerable MongoDB instances have been identified worldwide, posing a…
MongoDB has addressed a critical vulnerability, CVE-2025-14847, that allows unauthenticated remote attackers to execute arbitrary code on vulnerable servers. The flaw, with a CVSS score of 8.7, is linked to the server's…
MongoDB has patched CVE-2025-14847, a vulnerability that affects multiple versions of MongoDB Server. The flaw allows unauthenticated attackers to remotely exploit the vulnerability with low complexity, potentially…
A critical vulnerability, tracked as CVE-2025-14847, has been identified in MongoDB's zlib compression implementation, allowing attackers to extract uninitialized heap memory from database servers without…
The Global Cybersecurity Vulnerability Enumeration (GCVE) database has been launched in Europe to track IT security vulnerabilities and reduce reliance on U.S. systems. This initiative, accessible at db.gcve.eu, aims to…
MongoDB has identified a critical security vulnerability, tracked as CVE-2025-14847, that allows unauthenticated users to access uninitialized heap memory, potentially leading to remote code execution (RCE). This flaw…
CVE-2025-14847, known as MongoBleed, allows attackers to remotely leak memory from unpatched MongoDB servers using zlib compression without authentication. This critical vulnerability was disclosed shortly after…
Fortinet has reported that a five-year-old security vulnerability in its FortiOS SSL VPN software, identified as CVE-2020-12812, is being actively exploited in real-world attacks. This flaw allows attackers to bypass…
The Sophos State of Ransomware in Enterprise 2025 report reveals that ransomware recovery costs for enterprises have exceeded $2 million, highlighting the ongoing challenge organizations face with this pervasive threat.…