Skip to content

CVE-2025-48700

CVE

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
April 21, 2026
Last Seen
July 10, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Russian state-sponsored hacking group Laundry Bear has been exploiting a zero-day vulnerability in the Zimbra Collaboration Suite, tracked as CVE-2025-66376, since at least July 2025. This stored cross-site scripting (XSS) flaw allows attackers to execute malicious JavaScript when victims view craft...

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert regarding the active exploitation of three vulnerabilities in Cisco's Catalyst SD-WAN Manager, specifically CVE-2026-20122, CVE-2026-20128, and CVE-2026-20133. These vulnerabilities were added to CISA's Known...

Public Exploits

Checking GitHub for proof-of-concept code…