Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.3 MS:CVE-2025-55236

Graphics Kernel Remote Code Execution Vulnerability_MS:CVE-2025-55236

Time-of-check time-of-use (toctou) race condition in Graphics Kernel allows an authorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54913

Windows UI XAML Maps MapControlSettings Elevation of Privilege Vulnerability_MS:CVE-2025-54913

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows UI XAML Maps MapControlSettings allows an au...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54908

Microsoft PowerPoint Remote Code Execution Vulnerability_MS:CVE-2025-54908

Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54907

Microsoft Office Visio Remote Code Execution Vulnerability_MS:CVE-2025-54907

Heap-based buffer overflow in Microsoft Office Visio allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54898

Microsoft Excel Remote Code Execution Vulnerability_MS:CVE-2025-54898

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2025-55227

Microsoft SQL Server Elevation of Privilege Vulnerability_MS:CVE-2025-55227

Improper neutralization of special elements used in a command ('command injection') in SQL Server allows an authorized attacker to elevate privileg...

N/A N/A MSCVE
HIGH 7.4 MS:CVE-2025-54103

Windows Management Service Elevation of Privilege Vulnerability_MS:CVE-2025-54103

Use after free in Windows Management Services allows an unauthorized attacker to elevate privileges locally.

N/A N/A MSCVE
MEDIUM 5.5 MS:CVE-2025-53803

Windows Kernel Memory Information Disclosure Vulnerability_MS:CVE-2025-53803

Generation of error message containing sensitive information in Windows Kernel allows an authorized attacker to disclose information locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-53800

Windows Graphics Component Elevation of Privilege Vulnerability_MS:CVE-2025-53800

No cwe for this issue in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7 MS:CVE-2025-55223

DirectX Graphics Kernel Elevation of Privilege Vulnerability_MS:CVE-2025-55223

Concurrent execution using shared resource with improper synchronization ('race condition') in Graphics Kernel allows an authorized attacker to ele...

N/A N/A MSCVE