CVE-2025-70401Active Exploitation

MEDIUM

Exploitation ongoing with high activity in latest observed window (2 mentions)

Immediate actions

  • Patch affected systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

4.0/ 10 priority

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Threat summary

  • Active exploitation appears in 2 classified signals
  • Patch or workaround signal is available
  • 2 mentions across 1 observed day

What's happening

  • Active exploitation reported across 2 signals
  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 2 signals
  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-04-16: 2Active Exploitation · 2026-04-16: 2Patch / Workaround · 2026-04-16: 2Technical Details · 2026-04-16: 204-16
Signal classification2 categories
Active Exploitation
150.0%
Patch
150.0%
Full discourse2 posts
  • Jordano Mazzoni | 🌩 #Cloud 🛡️#Cybersecurity #AWS@jordano_mazzoni
    Patch

    🔍 Attention, security professionals! New critical CVEs require immediate action: CVE-2026-20963 (SharePoint) – RCE via deserialization CVE-2025-48827 (vBulletin) – CVSS 10.0, actively exploited CVE-2025-70401/70400 (UniFi) – Path traversal and RCE with network access CVE-2023-43010 (Apple) – Memory corruption in Safari and iOS ✅ Stay up to date. 🛠️ Patches are now available. 🚨 Real threats, urgent response. #Cybersecurity #CVE #InfoSec #CISAKEV #PatchNow

    Post summary

    The text announces several critical CVEs, notes that one is actively exploited, confirms patch availability, and urges immediate defensive action.

    01030122
    3.2K followersView on X
  • Jordano Mazzoni | 🌩 #Cloud 🛡️#Cybersecurity #AWS@jordano_mazzoni
    Active Exploitation

    🔍 セキュリティ専門家の皆様、注意してください! 新しい重要な CVE には即時の対応が必要です。 CVE-2026-20963 (SharePoint) – 逆シリアル化による RCE CVE-2025-48827 (vBulletin) – CVSS 10.0、積極的に悪用されています CVE-2025-70401/70400 (UniFi) – ネットワーク アクセスによるパス トラバーサルと RCE CVE-2023-43010 (Apple) – Safari および iOS でのメモリ破損 ✅ 最新情報を入手してください。 🛠️ パッチが利用可能になりました。 🚨 本当の脅威、緊急対応。 #サイバーセキュリティ #CVE #情報セキュリティ #CISAKEV #今すぐパッチ

    Post summary

    The notice highlights several high‑severity vulnerabilities, notes that CVE-2025-48827 is actively being exploited, and stresses that patches are now available.

    0001037
    2.9K followersView on X

Explore more