Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 4.3 MS:CVE-2025-54107

MapUrlToZone Security Feature Bypass Vulnerability_MS:CVE-2025-54107

Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54098

Windows Hyper-V Elevation of Privilege Vulnerability_MS:CVE-2025-54098

Improper access control in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54903

Microsoft Excel Remote Code Execution Vulnerability_MS:CVE-2025-54903

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54102

Windows Connected Devices Platform Service Elevation of Privilege Vulnerability_MS:CVE-2025-54102

Use after free in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2025-53798

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability_MS:CVE-2025-53798

Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.

N/A N/A MSCVE
MEDIUM 4.3 MS:CVE-2025-54917

MapUrlToZone Security Feature Bypass Vulnerability_MS:CVE-2025-54917

Protection mechanism failure in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54900

Microsoft Excel Remote Code Execution Vulnerability_MS:CVE-2025-54900

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7 MS:CVE-2025-54105

Microsoft Brokering File System Elevation of Privilege Vulnerability_MS:CVE-2025-54105

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Brokering File System allows an authorized...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54092

Windows Hyper-V Elevation of Privilege Vulnerability_MS:CVE-2025-54092

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an authorized attacker to ele...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-54895

SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Elevation of Privilege Vulnerability_MS:CVE-2025-54895

Integer overflow or wraparound in Windows SPNEGO Extended Negotiation allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE