Recent Advisories

Severity ID Title Vendor Product Date Type
NONE MS:CVE-2025-10585

Chromium: CVE-2025-10585 Type Confusion in V8_MS:CVE-2025-10585

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
NONE MS:CVE-2025-10500

Chromium: CVE-2025-10500 Use after free in Dawn_MS:CVE-2025-10500

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
NONE MS:CVE-2025-10501

Chromium: CVE-2025-10501 Use after free in WebRTC_MS:CVE-2025-10501

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
NONE MS:CVE-2025-10502

Chromium: CVE-2025-10502 Heap buffer overflow in ANGLE_MS:CVE-2025-10502

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
HIGH 7 MS:CVE-2025-59215

Windows Graphics Component Elevation of Privilege Vulnerability_MS:CVE-2025-59215

Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7 MS:CVE-2025-59216

Windows Graphics Component Elevation of Privilege Vulnerability_MS:CVE-2025-59216

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Graphics Component allows an authorized at...

N/A N/A MSCVE
HIGH 7 MS:CVE-2025-59220

Windows Bluetooth Service Elevation of Privilege Vulnerability_MS:CVE-2025-59220

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bluetooth Service allows an authorized attac...

N/A N/A MSCVE
MEDIUM 4 MS:CVE-2025-49728

Microsoft PC Manager Security Feature Bypass Vulnerability_MS:CVE-2025-49728

Cleartext storage of sensitive information in Microsoft PC Manager allows an unauthorized attacker to bypass a security feature locally.

N/A N/A MSCVE
MEDIUM 4.7 MS:CVE-2025-47967

Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability_MS:CVE-2025-47967

Insufficient ui warning of dangerous operations in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network.

N/A N/A MSCVE
NONE MS:CVE-2025-55319

Agentic AI and Visual Studio Code Remote Code Execution Vulnerability_MS:CVE-2025-55319

Ai command injection in Agentic AI and Visual Studio Code allows an unauthorized attacker to execute code over a network.

N/A N/A MSCVE