Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.5 MS:CVE-2025-47997

Microsoft SQL Server Information Disclosure Vulnerability_MS:CVE-2025-47997

Concurrent execution using shared resource with improper synchronization ('race condition') in SQL Server allows an authorized attacker to disclose...

N/A N/A MSCVE
MEDIUM 6.7 MS:CVE-2025-55226

Graphics Kernel Remote Code Execution Vulnerability_MS:CVE-2025-55226

Concurrent execution using shared resource with improper synchronization ('race condition') in Graphics Kernel allows an authorized attacker to exe...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54904

Microsoft Excel Remote Code Execution Vulnerability_MS:CVE-2025-54904

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2025-54106

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability_MS:CVE-2025-54106

Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54894

Local Security Authority Subsystem Service Elevation of Privilege Vulnerability_MS:CVE-2025-54894

{“lastseen”:”2025-09-09T17:37:48″,”description”:””,”published”:”2025-09-09T07:00:...

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2025-54113

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability_MS:CVE-2025-54113

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

N/A N/A MSCVE
MEDIUM 4.3 MS:CVE-2025-54107

MapUrlToZone Security Feature Bypass Vulnerability_MS:CVE-2025-54107

Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54098

Windows Hyper-V Elevation of Privilege Vulnerability_MS:CVE-2025-54098

Improper access control in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54903

Microsoft Excel Remote Code Execution Vulnerability_MS:CVE-2025-54903

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54102

Windows Connected Devices Platform Service Elevation of Privilege Vulnerability_MS:CVE-2025-54102

Use after free in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE