Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 1 MS:CVE-2025-12888

Constant Time Issue with Xtensa-based ESP32 and X22519_MS:CVE-2025-12888

{“lastseen”:”2025-11-26T01:37:34″,”description”:””,”published”:”2025-11-25T01:01:...

N/A N/A MSCVE
MEDIUM 6.3 MS:CVE-2025-11936

Potential DoS Vulnerability through Multiple KeyShareEntry with Same Group in TLS 1.3 ClientHello_MS:CVE-2025-11936

{“lastseen”:”2025-11-26T01:37:33″,”description”:””,”published”:”2025-11-25T01:02:...

N/A N/A MSCVE
LOW 2.1 MS:CVE-2025-11931

Integer Underflow Leads to Out-of-Bounds Access in XChaCha20-Poly1305 Decrypt_MS:CVE-2025-11931

{“lastseen”:”2025-11-26T01:37:33″,”description”:””,”published”:”2025-11-25T01:02:...

N/A N/A MSCVE
LOW 2.1 MS:CVE-2025-11934

Improper Validation of Signature Algorithm Used in TLS 1.3 CertificateVerify_MS:CVE-2025-11934

{“lastseen”:”2025-11-26T01:37:33″,”description”:””,”published”:”2025-11-25T01:02:...

N/A N/A MSCVE
LOW 2.3 MS:CVE-2025-12889

TLS 1.2 Client Can Downgrade Digest Used_MS:CVE-2025-12889

{“lastseen”:”2025-11-26T01:37:33″,”description”:””,”published”:”2025-11-25T01:02:...

N/A N/A MSCVE
LOW 2.3 MS:CVE-2025-11933

DoS Vulnerability in wolfSSL TLS 1.3 CKS Extension_MS:CVE-2025-11933

{“lastseen”:”2025-11-26T01:37:33″,”description”:””,”published”:”2025-11-25T01:02:...

N/A N/A MSCVE
LOW 2.3 MS:CVE-2025-11932

Timing Side-Channel in PSK Binder Verification_MS:CVE-2025-11932

{“lastseen”:”2025-11-26T01:37:33″,”description”:””,”published”:”2025-11-25T01:02:...

N/A N/A MSCVE
HIGH 8.5 MS:CVE-2025-64324

KubeVirt Vulnerable to Arbitrary Host File Read and Write_MS:CVE-2025-64324

{“lastseen”:”2025-11-20T23:36:43″,”description”:””,”published”:”2025-11-20T01:01:...

N/A N/A MSCVE
HIGH 8.6 MS:CVE-2025-62207

Azure Monitor Elevation of Privilege Vulnerability_MS:CVE-2025-62207

{“lastseen”:”2025-11-20T23:36:43″,”description”:””,”published”:”2025-11-20T08:00:...

N/A N/A MSCVE
MEDIUM 5.7 MS:CVE-2025-64660

GitHub Copilot and Visual Studio Code Security Feature Bypass Vulnerability_MS:CVE-2025-64660

Improper access control in GitHub Copilot and Visual Studio Code allows an authorized attacker to bypass a security feature over a network.

N/A N/A MSCVE