Recent Advisories

Severity ID Title Vendor Product Date Type
NONE MS:CVE-2025-11756

Chromium: CVE-2025-11756 Use after free in Safe Browsing_MS:CVE-2025-11756

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-59278

Windows Authentication Elevation of Privilege Vulnerability_MS:CVE-2025-59278

Improper validation of specified type of input in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-59230

Windows Remote Access Connection Manager Elevation of Privilege Vulnerability_MS:CVE-2025-59230

Improper access control in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-59241

Windows Health and Optimized Experiences Elevation of Privilege Vulnerability_MS:CVE-2025-59241

Improper link resolution before file access ('link following') in Windows Health and Optimized Experiences Service allows an authorized attacker to...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-59227

Microsoft Office Remote Code Execution Vulnerability_MS:CVE-2025-59227

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-59222

Microsoft Word Remote Code Execution Vulnerability_MS:CVE-2025-59222

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.1 MS:CVE-2025-59208

Windows MapUrlToZone Information Disclosure Vulnerability_MS:CVE-2025-59208

Out-of-bounds read in Windows MapUrlToZone allows an unauthorized attacker to disclose information over a network.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-59192

Storport.sys Driver Elevation of Privilege Vulnerability_MS:CVE-2025-59192

Buffer over-read in Storport.sys Driver allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
MEDIUM 5.5 MS:CVE-2025-59184

Storage Spaces Direct Information Disclosure Vulnerability_MS:CVE-2025-59184

Exposure of sensitive information to an unauthorized actor in Windows High Availability Services allows an authorized attacker to disclose informat...

N/A N/A MSCVE
HIGH 7.5 MS:CVE-2025-58726

Windows SMB Server Elevation of Privilege Vulnerability_MS:CVE-2025-58726

Improper access control in Windows SMB Server allows an authorized attacker to elevate privileges over a network.

N/A N/A MSCVE