Skip to content

CVE-2025-24893

CVE

Threat entity extracted from intelligence sources

Frequency
9
occurrences
First Seen
October 29, 2025
Last Seen
March 9, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

The RondoDox botnet is exploiting the unpatched XWiki remote code execution vulnerability CVE-2025-24893, which has a CVSS score of 9.8. Despite patches released in February 2025, many servers remain vulnerable, allowing RondoDox to infect additional devices and expand its network. The attack target...

Hackers are increasingly targeting newly disclosed vulnerabilities in third-party software to access cloud environments, with the time frame for such attacks decreasing significantly. Google reports a notable decline in the use of weak credentials and misconfigurations in the latter half of 2025, in...

The RondoDox botnet has been exploiting the React2Shell flaw (CVE-2025-55182) to infect vulnerable .js servers with malware and cryptominers. First documented by Fortinet in July 2025, the botnet targets multiple n-day vulnerabilities, including a critical RCE vulnerability in the XWiki Platform ide...

The RondoDox botnet is exploiting the unpatched XWiki remote code execution (RCE) flaw CVE-2025-24893, which has a CVSS score of 9.8. Despite patches released in February 2025, the botnet continues to infect servers, significantly expanding its capabilities and targeting enterprise systems. Recent r...

Public Exploits

Checking GitHub for proof-of-concept code…

Related Clusters (11)

1 / 3

Related Articles (9)

1 / 2