Xen is a bare-metal virtualization hypervisor platform used to run guest virtual machines in Linux environments (notably openSUSE and SUSE).
Xen is a technology platform tracked across 5 threat clusters and 10 intelligence report mentions on ThreatCluster. First observed December 17, 2025; most recent activity July 29, 2026.
Xen is a bare-metal virtualization hypervisor platform used to run guest virtual machines in Linux environments (notably openSUSE and SUSE). Recent advisories report memory access flaws, information leaks, and permission-related CVEs affecting Xen, prompting critical and moderate security updates that impact virtualization security and VM isolation in cloud and data-center deployments.
On July 28, 2026, the Xen Project released 12 security advisories addressing severe vulnerabilities, including three that allow guest virtual machines to escape to the host. These vulnerabilities, identified as…
On June 10, 2026, openSUSE released updates addressing critical vulnerabilities in Xen, specifically CVE-2026-42487, CVE-2026-42488, CVE-2026-42489, and CVE-2026-42490. These vulnerabilities include issues such as x86…
Recent updates for openSUSE have addressed multiple vulnerabilities in Xen, specifically CVE-2025-54505, CVE-2026-23557, and CVE-2026-23558. CVE-2025-54505 involves floating point divider state sampling on AMD CPUs,…
SUSE has issued a security update addressing CVE-2025-58149, which involves incorrect removal of permissions on PCI device unplug. This vulnerability allows PV guests to access memory of devices that are no longer…
openSUSE and SUSE released an important update for Xen addressing multiple vulnerabilities, including CVE-2025-27466, CVE-2025-58142, and CVE-2025-58143. These vulnerabilities involve NULL pointer dereferences and an…
Xen is a bare-metal virtualization hypervisor platform used to run guest virtual machines in Linux environments (notably openSUSE and SUSE).
The most recent intelligence report mentioning Xen on ThreatCluster is dated July 29, 2026. Activity was first observed December 17, 2025, giving a tracked span from then to July 29, 2026.
Across ThreatCluster reporting, Xen most frequently co-occurs with Data Breach, DDoS, OpenSUSE, SuSE, CVE-2025-27466, among 12 tracked related entities.
The most significant recent cluster is “Xen Hypervisor Patches 12 Critical Vulnerabilities, Immediate Action Required” (2 articles · Updated July 30, 2026). Xen appears across 5 threat clusters in total, listed above with sources.
Xen appears in 10 intelligence report mentions across 5 deduplicated threat clusters, aggregated from 17,000+ monitored sources.