microsoft

14,170 tracked vulnerabilities.

CVE-2025-59260 MEDIUM
Windows Server 2016/2019/2022/2025 Authenticated Information Disclosure in Failover Cluster Virtual Driver
Oct 14, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-59259 MEDIUM
Windows Local Session Manager - DoS
Oct 14, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-59258 MEDIUM
Windows Server 2012, 2016, 2019, 2022, 2025 - Unauthorized Information Disclosure via ADFS Log File
Oct 14, 2025
CVSS 6.2
EPSS 0.00
CVE-2025-59257 MEDIUM
Windows Local Session Manager - DoS
Oct 14, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-59255 HIGH
Windows DWM Core Library - Authenticated Heap-based Buffer Overflow
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59254 HIGH
Windows 10/11, Server 2016 - Privilege Escalation via Heap Overflow
Oct 14, 2025
CVSS 7.8
EPSS 0.01
CVE-2025-59253 MEDIUM
Windows 10 1507-22H2, Windows 11 22H2-25H2, Windows Server 2012 - Authenticated Denial of Service in Search Component
Oct 14, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-59250 HIGH
JDBC Driver for SQL Server 10.2.0-10.2.4 and 8.3.0.jre11-preview-10.2.4.jre11 - Spoofing via Improper Input Validation
Oct 14, 2025
CVSS 8.1
EPSS 0.00
CVE-2025-59249 HIGH
Microsoft Exchange Server - Privilege Escalation
Oct 14, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-59248 HIGH
Microsoft Exchange Server - Spoofing via Improper Input Validation
Oct 14, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-59244 MEDIUM
Windows Core Shell - Path Traversal
Oct 14, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-59243 HIGH
Microsoft 365 Apps and Office Long Term Servicing Channel - Use-After-Free
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59242 HIGH
Windows 10/11, Server 2008 - Privilege Escalation via AFD Heap Overflow
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59241 HIGH
Windows 11 24H2 < 10.0.26100.6899 and 25H2 < 10.0.26200.6899 - Authenticated Privilege Escalation via Link Following
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59238 HIGH
Microsoft 365 Apps and Office - Use-After-Free in PowerPoint
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59237 HIGH
Microsoft SharePoint Server - Remote Code Execution via Untrusted Data Deserialization
Oct 14, 2025
CVSS 8.8
EPSS 0.04
CVE-2025-59236 HIGH
Microsoft 365 Apps and Office - Use-After-Free
Oct 14, 2025
CVSS 8.4
EPSS 0.00
CVE-2025-59235 HIGH
Microsoft Excel - Out-of-bounds Read
Oct 14, 2025
CVSS 7.1
EPSS 0.00
CVE-2025-59234 HIGH
Microsoft 365 Apps and Office - Use-After-Free
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59233 HIGH
Microsoft Excel - Remote Code Execution via Type Confusion
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59232 HIGH
Microsoft Excel - Out-of-bounds Read
Oct 14, 2025
CVSS 7.1
EPSS 0.00
CVE-2025-59231 HIGH
Microsoft Excel - Remote Code Execution via Type Confusion
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59230 HIGH KEV
Windows Remote Access Connection Manager - Privilege Escalation via Improper Access Control
Oct 14, 2025
CVSS 7.8
EPSS 0.05
CVE-2025-59229 MEDIUM
Microsoft 365 Apps - Denial of Service via Uncaught Exception
Oct 14, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-59228 HIGH
Microsoft SharePoint Server - Remote Code Execution via Improper Input Validation
Oct 14, 2025
CVSS 8.8
EPSS 0.00