Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7 MS:CVE-2025-54093

Windows TCP/IP Driver Elevation of Privilege Vulnerability_MS:CVE-2025-54093

Time-of-check time-of-use (toctou) race condition in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2025-53806

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability_MS:CVE-2025-53806

Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.

N/A N/A MSCVE
MEDIUM 5.5 MS:CVE-2025-53799

Windows Imaging Component Information Disclosure Vulnerability_MS:CVE-2025-53799

Use of uninitialized resource in Windows Imaging Component allows an unauthorized attacker to disclose information locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-55316

Azure Arc Elevation of Privilege Vulnerability_MS:CVE-2025-55316

External control of file name or path in Azure Arc allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.3 MS:CVE-2025-55236

Graphics Kernel Remote Code Execution Vulnerability_MS:CVE-2025-55236

Time-of-check time-of-use (toctou) race condition in Graphics Kernel allows an authorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54913

Windows UI XAML Maps MapControlSettings Elevation of Privilege Vulnerability_MS:CVE-2025-54913

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows UI XAML Maps MapControlSettings allows an au...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54908

Microsoft PowerPoint Remote Code Execution Vulnerability_MS:CVE-2025-54908

Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54907

Microsoft Office Visio Remote Code Execution Vulnerability_MS:CVE-2025-54907

Heap-based buffer overflow in Microsoft Office Visio allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54898

Microsoft Excel Remote Code Execution Vulnerability_MS:CVE-2025-54898

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2025-55227

Microsoft SQL Server Elevation of Privilege Vulnerability_MS:CVE-2025-55227

Improper neutralization of special elements used in a command ('command injection') in SQL Server allows an authorized attacker to elevate privileg...

N/A N/A MSCVE