Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7 MS:CVE-2025-59508

Windows Speech Recognition Elevation of Privilege Vulnerability_MS:CVE-2025-59508

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Speech allows an authorized attacker to elev...

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2025-62222

Agentic AI and Visual Studio Code Remote Code Execution Vulnerability_MS:CVE-2025-62222

Improper neutralization of special elements used in a command ('command injection') in Visual Studio Code CoPilot Chat Extension allows an unauthor...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-60713

Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability_MS:CVE-2025-60713

Untrusted pointer dereference in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.

N/A N/A MSCVE
HIGH 7.1 MS:CVE-2025-60726

Microsoft Excel Information Disclosure Vulnerability_MS:CVE-2025-60726

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2025-60708

Storvsp.sys Driver Denial of Service Vulnerability_MS:CVE-2025-60708

Untrusted pointer dereference in Storvsp.sys Driver allows an authorized attacker to deny service locally.

N/A N/A MSCVE
HIGH 7 MS:CVE-2025-59507

Windows Speech Runtime Elevation of Privilege Vulnerability_MS:CVE-2025-59507

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Speech allows an authorized attacker to elev...

N/A N/A MSCVE
MEDIUM 6.7 MS:CVE-2025-62214

Visual Studio Remote Code Execution Vulnerability_MS:CVE-2025-62214

Improper neutralization of special elements used in a command ('command injection') in Visual Studio allows an authorized attacker to execute code ...

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-62200

Microsoft Excel Remote Code Execution Vulnerability_MS:CVE-2025-62200

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
HIGH 7.8 MS:CVE-2025-60714

Windows OLE Remote Code Execution Vulnerability_MS:CVE-2025-60714

Heap-based buffer overflow in Windows OLE allows an unauthorized attacker to execute code locally.

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2025-60722

Microsoft OneDrive for Android Elevation of Privilege Vulnerability_MS:CVE-2025-60722

Improper limitation of a pathname to a restricted directory ('path traversal') in OneDrive for Android allows an authorized attacker to elevate pri...

N/A N/A MSCVE