Warning: Zero-Day Vulnerability in Sitecore Products (CVE-2025-53690), Fix Immediately!
ID: 77fa4902-deb3-5a59-97e9-795b131835a3
STIX ID: report--77fa4902-deb3-5a59-97e9-795b131835a3
Feed Name: CCB Advisories Feed
Critical zero-day CVE-2025-53690 affects Sitecore XM/XP/XC and related deployments that used publicly documented sample ASP.NET machine keys, allowing attackers to bypass ViewState protection and achieve remote code execution; Mandiant and other sources report active exploitation with privilege escalation, credential theft, persistence and custom malware delivery. Immediate actions recommended are applying vendor patches, rotating and protecting machineKey entries in web.config, restricting access, and increasing monitoring and incident response readiness because patching alone does not remediate prior compromise.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
