CISA's list that day
29 December 2025
On CISA added 1 vulnerability to its list of exploited vulnerabilities: CVE-2025-14847 in MongoDB and MongoDB Server. US federal agencies must fix it by .
Added that day
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2025-14847Improper Handling of Length Parameter Inconsistency | MongoDB MongoDB and MongoDB Server | Patch this weekMetasploit module; EPSS 0.83 | 0.83 |