logo

CISA Warns of MongoDB Server Vulnerability(CVE-2025-14847) Exploited in Attacks

ID: c7ac15e8-17cd-5d6d-87d0-2afb91df4444

STIX ID: report--c7ac15e8-17cd-5d6d-87d0-2afb91df4444

Feed Name: cybersecurityNews.com

Threat Score
80/100

Date Published: 2025-12-30

Date Updated: 2026-04-21

Author: Abinaya

...
...

CISA has added CVE-2025-14847 — a critical, unauthenticated MongoDB Server vulnerability enabling read access to uninitialized heap memory — to its Known Exploited Vulnerabilities catalog after confirming active exploitation; organizations are urged to apply vendor patches or follow BOD 22-01 mitigations immediately to prevent potential data disclosure and further compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.