Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.5 MS:CVE-2025-53798

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability_MS:CVE-2025-53798

Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.

N/A N/A MSCVE
MEDIUM 4.3 MS:CVE-2025-54917

MapUrlToZone Security Feature Bypass Vulnerability_MS:CVE-2025-54917

Protection mechanism failure in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54900

Microsoft Excel Remote Code Execution Vulnerability_MS:CVE-2025-54900

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7 MS:CVE-2025-54105

Microsoft Brokering File System Elevation of Privilege Vulnerability_MS:CVE-2025-54105

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Brokering File System allows an authorized...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54092

Windows Hyper-V Elevation of Privilege Vulnerability_MS:CVE-2025-54092

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an authorized attacker to ele...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54895

SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Elevation of Privilege Vulnerability_MS:CVE-2025-54895

Integer overflow or wraparound in Windows SPNEGO Extended Negotiation allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
MEDIUM 4.8 MS:CVE-2025-54101

Windows SMB Client Remote Code Execution Vulnerability_MS:CVE-2025-54101

Use after free in Windows SMBv3 Client allows an authorized attacker to execute code over a network.

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2025-54096

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability_MS:CVE-2025-54096

Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.

N/A N/A MSCVE
HIGH 7.5 MS:CVE-2024-21907

VulnCheck: CVE-2024-21907 Improper Handling of Exceptional Conditions in Newtonsoft.Json_MS:CVE-2024-21907

CVE-2024-21907 addresses a mishandling of exceptional conditions vulnerability in Newtonsoft.Json before version 13.0.1. Crafted data that is passe...

N/A N/A MSCVE
HIGH 7 MS:CVE-2025-54115

Windows Hyper-V Elevation of Privilege Vulnerability_MS:CVE-2025-54115

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an authorized attacker to ele...

N/A N/A MSCVE