CVE-2025-14847
- CVSS
- —
- EPSS
- 0.832 (99.7th percentile)
- CISA KEV
- Added 2025-12-29, due 2026-01-19
- Exploitation
- No report
- Public exploits
- 40 repositories
- State
- Unknown
Coverage

Actively exploitedCritical 70Wiz Research
MongoBleed (CVE-2025-14847) exploited in the wild: everything you need to know
Detect and mitigate CVE-2025-14847, an unauthenticated information leak vulnerability in MongoDB. Exploitation has been observed in the wild. Organizations should patch urgently.
What we observed
- poc publishedpoc-in-github
- poc publishedpoc-in-github
- poc publishedpoc-in-github
- kev addedcisa-kev