Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.8 MS:CVE-2025-62220

Windows Subsystem for Linux GUI Remote Code Execution Vulnerability_MS:CVE-2025-62220

Heap-based buffer overflow in Windows Subsystem for Linux GUI allows an unauthorized attacker to execute code over a network.

N/A N/A MSCVE
HIGH 7 MS:CVE-2025-62217

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability_MS:CVE-2025-62217

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-62199

Microsoft Office Remote Code Execution Vulnerability_MS:CVE-2025-62199

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
MEDIUM 4.3 MS:CVE-2025-60728

Microsoft Excel Information Disclosure Vulnerability_MS:CVE-2025-60728

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-60707

Multimedia Class Scheduler Service (MMCSS) Driver Elevation of Privilege Vulnerability_MS:CVE-2025-60707

Use after free in Multimedia Class Scheduler Service (MMCSS) allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-60705

Windows Client-Side Caching Elevation of Privilege Vulnerability_MS:CVE-2025-60705

Improper access control in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
MEDIUM 5.5 MS:CVE-2025-59513

Windows Bluetooth RFCOM Protocol Driver Information Disclosure Vulnerability_MS:CVE-2025-59513

Out-of-bounds read in Windows Bluetooth RFCOM Protocol Driver allows an authorized attacker to disclose information locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-59512

Customer Experience Improvement Program (CEIP) Elevation of Privilege Vulnerability_MS:CVE-2025-59512

Improper access control in Customer Experience Improvement Program (CEIP) allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-59511

Windows WLAN Service Elevation of Privilege Vulnerability_MS:CVE-2025-59511

External control of file name or path in Windows WLAN Service allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.3 MS:CVE-2025-59504

Azure Monitor Agent Remote Code Execution Vulnerability_MS:CVE-2025-59504

Heap-based buffer overflow in Azure Monitor Agent allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE