Xorg is a technology platform tracked across 2 threat clusters and 2 intelligence report mentions on ThreatCluster. First observed December 12, 2025; most recent activity February 8, 2026.
Xorg is the X.Org Server (X11) platform that provides the graphical display server for Unix-like systems, including the xwayland compatibility layer. A recent CVE note highlights CVE-2025-49176, a vulnerability in the big-requests extension affecting the xorg-x11-server/xwayland/tigervnc stack, indicating a security risk in remote graphical components exposed via VNC. This expands the attack surface of Xorg-based environments and is relevant for defenders managing graphical session exposure.
Three vulnerabilities have been identified in the Xorg-x11-server-xwayland related to TigerVNC. CVE-2025-49179 and CVE-2025-49176 involve integer overflow issues in the x record and big requests extensions,…
A critical stack-based buffer overflow vulnerability, CVE-2025-68670, was identified in xrdp, affecting users of Fedora 43. This vulnerability arises from improper bounds checking of domain string length, which could…