Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.8 MS:CVE-2025-62572

Application Information Service Elevation of Privilege Vulnerability_MS:CVE-2025-62572

Out-of-bounds read in Application Information Services allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-62454

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability_MS:CVE-2025-62454

Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-64679

Windows DWM Core Library Elevation of Privilege Vulnerability_MS:CVE-2025-64679

Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 8.4 MS:CVE-2025-64671

GitHub Copilot for Jetbrains Remote Code Execution Vulnerability_MS:CVE-2025-64671

Improper neutralization of special elements used in a command ('command injection') in Copilot allows an unauthorized attacker to execute code loca...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-64661

Windows Shell Elevation of Privilege Vulnerability_MS:CVE-2025-64661

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Shell allows an authorized attacker to eleva...

N/A N/A MSCVE
HIGH 7.1 MS:CVE-2025-62570

Windows Camera Frame Server Monitor Information Disclosure Vulnerability_MS:CVE-2025-62570

Improper access control in Windows Camera Frame Server Monitor allows an authorized attacker to disclose information locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-62559

Microsoft Word Remote Code Execution Vulnerability_MS:CVE-2025-62559

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-62558

Microsoft Word Remote Code Execution Vulnerability_MS:CVE-2025-62558

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7 MS:CVE-2025-62555

Microsoft Word Remote Code Execution Vulnerability_MS:CVE-2025-62555

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.5 MS:CVE-2025-64666

Microsoft Exchange Server Elevation of Privilege Vulnerability_MS:CVE-2025-64666

Improper input validation in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network.

N/A N/A MSCVE