Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.8 MS:CVE-2025-62200

Microsoft Excel Remote Code Execution Vulnerability_MS:CVE-2025-62200

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-60714

Windows OLE Remote Code Execution Vulnerability_MS:CVE-2025-60714

Heap-based buffer overflow in Windows OLE allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2025-60722

Microsoft OneDrive for Android Elevation of Privilege Vulnerability_MS:CVE-2025-60722

Improper limitation of a pathname to a restricted directory ('path traversal') in OneDrive for Android allows an authorized attacker to elevate pri...

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2025-62206

Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability_MS:CVE-2025-62206

Exposure of sensitive information to an unauthorized actor in Microsoft Dynamics 365 (on-premises) allows an unauthorized attacker to disclose info...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-60727

Microsoft Excel Remote Code Execution Vulnerability_MS:CVE-2025-60727

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-60709

Windows Common Log File System Driver Elevation of Privilege Vulnerability_MS:CVE-2025-60709

Out-of-bounds read in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
MEDIUM 6.8 MS:CVE-2025-62449

Microsoft Visual Studio Code CoPilot Chat Extension Security Feature Bypass Vulnerability_MS:CVE-2025-62449

Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code CoPilot Chat Extension allows an authorized at...

N/A N/A MSCVE
HIGH 8.7 MS:CVE-2025-62211

Dynamics 365 Field Service (online) Spoofing Vulnerability_MS:CVE-2025-62211

Improper neutralization of input during web page generation ('cross-site scripting') in Dynamics 365 Field Service (online) allows an authorized at...

N/A N/A MSCVE
HIGH 8 MS:CVE-2025-62204

Microsoft SharePoint Remote Code Execution Vulnerability_MS:CVE-2025-62204

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-62201

Microsoft Excel Remote Code Execution Vulnerability_MS:CVE-2025-62201

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE