Vite — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
5
occurrences
First Seen
December 4, 2025
Last Seen
July 20, 2026

Related Threat Clusters

  • Cambodia Enacts Harsh Law Against Cyber Scam Operators

    On April 6, 2026, Cambodia's government passed a stringent law targeting cyber scam operations, particularly those involving cryptocurrency fraud. The law imposes severe penalties, including life imprisonment for…

    3 articles · Updated April 6, 2026
  • New ViteVenom Malware Targets Developers with Blockchain C2 RAT

    Checkmarx researchers have identified a cluster of seven malicious npm packages named ViteVenom, targeting the Vite frontend ecosystem. The campaign, attributed to the threat actor SuccessKey, builds on tactics from the…

    3 articles · Updated July 20, 2026
  • Critical React Flaw CVE-2025-55182 Exposes Major Security Risks

    A maximum-severity vulnerability in the React JavaScript library, tracked as CVE-2025-55182, allows unauthenticated remote code execution on affected instances. Security researchers report that 39 percent of cloud…

    47 articles · Updated December 3, 2025
  • CISA Adds New Vulnerabilities to KEV Catalog

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog. The vulnerabilities affect Vitejs, Prettier, Versa Concerto…

    2 articles · Updated January 26, 2026

Recent Intelligence Reports

  • New npm malware cluster targets Vite ecosystem | brief — Scworld · July 20, 2026
  • Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RAT — Thehackernews · July 17, 2026
  • New Cambodian law will send scam compound operators to life in prison — News.Risky.Biz · April 6, 2026
  • U.S. CISA adds Prettier eslint-config-prettier, Vite Vitejs, Versa Concerto SD-WAN orchestration platform, and Synacor Zimbra Collaboration Suite flaws to its Known Exploited Vulnerabilities catalog — Securityaffairs.Co · January 23, 2026
  • CVE-2025-55182 vulnerability in React and Next.js — Kaspersky · December 4, 2025

CVSS v3.1 Breakdown