A vulnerability identified as CVE-2014-125130 was reportedly exploited on the same day it was publicly disclosed, October 2, 2026. This rapid exploitation window means that threat actors began leveraging the flaw immediately upon its publication.
The Common Vulnerabilities and Exposures (CVE) record for CVE-2014-125130 was reserved and published concurrently on October 2, 2026. On this same date, the vulnerability was first listed in a Known Exploited Vulnerabilities (KEV) catalog, specifically by VulnCheck KEV, which is a commercial research entity. The CIRCL aggregator, which mirrors VulnCheck's listings, also included it on October 2, 2026.
While VulnCheck KEV and CIRCL reported evidence of exploitation on October 2, 2026, the claim of exploitation rests on a single primary source. Neither the CISA KEV, maintained by the US federal government, nor the EUVD (ENISA, European Union) catalog currently lists CVE-2014-125130 as an exploited vulnerability.
The vulnerability's CVSS severity score is currently listed as "none," and its Exploit Prediction Scoring System (EPSS) percentile is 43.0th, with a score of 0.53%. This suggests that while the vulnerability was quickly exploited, its perceived impact or likelihood of future exploitation might not be considered exceptionally high based on these metrics.
The rapid timeline from CVE publication to reported exploitation highlights a "patch window" of effectively zero days for organizations to implement mitigations before the vulnerability was actively targeted. The last recorded sighting of exploitation also occurred on October 2, 2026, coinciding with its initial disclosure and KEV listing.






