microsoft

14,170 tracked vulnerabilities.

CVE-2025-59227 HIGH
Microsoft 365 Apps and Office - Use-After-Free
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59226 HIGH
Microsoft 365 Apps and Office Long Term Servicing Channel - Use-After-Free
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59225 HIGH
Microsoft Excel - Use-After-Free
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59224 HIGH
Microsoft Excel - Use-After-Free
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59223 HIGH
Microsoft Excel - Use-After-Free
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59222 HIGH
Microsoft Office Word - Use-After-Free
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59221 HIGH
Microsoft Office Word - Use-After-Free
Oct 14, 2025
CVSS 7.0
EPSS 0.00
CVE-2025-59214 MEDIUM
Windows File Explorer - Unauthorized Sensitive Information Exposure via Spoofing
Oct 14, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-59213 HIGH
Microsoft Configuration Manager SQL Injection (2403<5.00.9128.1035, 2409<5.00.9132.1029, 2503<5.00.9135.1008)
Oct 14, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-59211 MEDIUM
Windows 10 1507-22H2, Windows 11 22H2-25H2, Windows Server 2012 - Information Disclosure in Push Notification Core
Oct 14, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-59210 HIGH
Windows 11 24H2/25H2 & Server 2025 < 10.0.26200.6899 - ReFS Deduplication Service Use-After-Free
Oct 14, 2025
CVSS 7.4
EPSS 0.00
CVE-2025-59209 MEDIUM
Windows 10/11, Server 2012 - Authenticated Info Disclosure in Push Notification Core
Oct 14, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-59208 HIGH
Windows 10 1507-22H2, Windows 11 22H2-25H2, Windows Server 2008 - Unauthenticated Out-of-bounds Read in MapUrlToZone
Oct 14, 2025
CVSS 7.1
EPSS 0.00
CVE-2025-59207 HIGH
Windows Kernel < - Privilege Escalation
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59206 HIGH
Windows 11 24H2/25H2 & Server 2025 < 10.0.26200.6899 - ReFS Deduplication Service Use-After-Free
Oct 14, 2025
CVSS 7.4
EPSS 0.00
CVE-2025-59205 HIGH
Windows 10/11, Server 2008-2022 - Privilege Escalation via Graphics Race Condition
Oct 14, 2025
CVSS 7.0
EPSS 0.00
CVE-2025-59204 MEDIUM
Windows Management Services - Information Disclosure via Uninitialized Resource
Oct 14, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-59203 MEDIUM
Windows StateRepository API - Sensitive Information Disclosure via Log File Insertion
Oct 14, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-59202 HIGH
Windows Remote Desktop Services - Use-After-Free
Oct 14, 2025
CVSS 7.0
EPSS 0.00
CVE-2025-59201 HIGH
Windows 10/11, Server 2008 - Privilege Escalation via Network Connection Status Indicator
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59200 HIGH
Data Sharing Service Client - Spoofing
Oct 14, 2025
CVSS 7.7
EPSS 0.00
CVE-2025-59199 HIGH
Windows 10 1809-11 24H2 and Windows Server 2019-2025 - Privilege Escalation in Software Protection Platform
Oct 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-59198 MEDIUM
Windows Search Component - Denial of Service via Improper Input Validation
Oct 14, 2025
CVSS 5.0
EPSS 0.00
CVE-2025-59197 MEDIUM
Windows 10 1507-22H2, Windows 11 22H2-25H2, Windows Server 2016 - Information Disclosure via ETL Channel Log Insertion
Oct 14, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-59196 HIGH
Windows 10/11, Server 2008 - Privilege Escalation via SSDP Race Condition
Oct 14, 2025
CVSS 7.0
EPSS 0.00