Shared from twixb · thehackernews.com

ShowDoc RCE Flaw CVE-2025-0520 Actively Exploited on Unpatched Servers

thehackernews.com·Apr 14, 2026

A serious security vulnerability (CVE-2025-0520) in ShowDoc, a widely used document management service in China, is being actively exploited, with a high CVSS score of 9.4 indicating its severity, due to issues with unrestricted file uploads from improper validation.

Given the active exploitation of CVE-2025-0520 in ShowDoc, it's crucial for your organization to promptly review any use of this service and apply necessary mitigations or patches. This vulnerability's high CVSS score highlights the critical risk it poses, emphasizing the need for heightened vigilance in your threat intelligence operations to prevent potential data breaches or compromises.

Powered by twixb

Want more content like this?

twixb tracks your favorite blogs and social media, filters by keywords, and delivers personalized key learnings — straight to your inbox.