microsoft

14,170 tracked vulnerabilities.

CVE-2025-49747 CRITICAL
Azure Machine Learning - Missing Authorization
Jul 18, 2025
CVSS 9.9
EPSS 0.01
CVE-2025-49746 CRITICAL
Azure Machine Learning - Privilege Escalation via Improper Authorization
Jul 18, 2025
CVSS 9.9
EPSS 0.02
CVE-2025-47995 MEDIUM
Azure Machine Learning - Privilege Escalation
Jul 18, 2025
CVSS 6.5
EPSS 0.03
CVE-2025-47158 CRITICAL
Azure DevOps - Unauthenticated Privilege Escalation via Assumed-Immutable Data
Jul 18, 2025
CVSS 9.0
EPSS 0.01
CVE-2025-47964 MEDIUM
Microsoft Edge Chromium < 138.0.3351.55 - Spoofing
Jul 11, 2025
CVSS 5.4
EPSS 0.01
CVE-2025-47963 MEDIUM
Microsoft Edge Chromium < 138.0.3351.55 - Spoofing via UI Misrepresentation
Jul 11, 2025
CVSS 6.3
EPSS 0.02
CVE-2025-47182 MEDIUM
Microsoft Edge Chromium < 138.0.3351.55 - Authenticated Security Feature Bypass via Improper Input Validation
Jul 11, 2025
CVSS 5.6
EPSS 0.00
CVE-2025-49760 LOW
Microsoft Windows Storage - Spoofing via External Control of File Name or Path
Jul 08, 2025
CVSS 3.5
EPSS 0.01
CVE-2025-49756 LOW
Microsoft 365 Apps - Security Feature Bypass via Broken Cryptographic Algorithm
Jul 08, 2025
CVSS 3.3
EPSS 0.00
CVE-2025-49753 HIGH
Windows Server RRAS Heap Overflow Remote Code Execution
Jul 08, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-49744 HIGH
Windows 10/11, Server 2016-2019 Local Privilege Escalation via Heap Overflow
Jul 08, 2025
CVSS 7.0
EPSS 0.02
CVE-2025-49742 HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008 - Local Code Execution via Integer Overflow
Jul 08, 2025
CVSS 7.8
EPSS 0.01
CVE-2025-49740 HIGH
Windows SmartScreen - Privilege Escalation
Jul 08, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-49739 HIGH
Visual Studio 2017, 2019, 2022 - Privilege Escalation via Improper Link Resolution
Jul 08, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-49738 HIGH
Microsoft PC Manager < 3.17.4.0 - Privilege Escalation via Improper Link Resolution
Jul 08, 2025
CVSS 7.8
EPSS 0.01
CVE-2025-49737 HIGH
Microsoft Teams < 25163.3001.3726.6503 - Authenticated Privilege Escalation via Race Condition
Jul 08, 2025
CVSS 7.0
EPSS 0.00
CVE-2025-49735 HIGH
Windows Server 2012-2025 Unauthenticated RCE via KDC Proxy Service Use-After-Free
Jul 08, 2025
CVSS 8.1
EPSS 0.01
CVE-2025-49733 HIGH
Windows Win32K - Use-After-Free in ICOMP
Jul 08, 2025
CVSS 7.8
EPSS 0.01
CVE-2025-49732 HIGH
Windows 10/11, Server 2008 - Privilege Escalation via Heap Overflow in Graphics
Jul 08, 2025
CVSS 7.8
EPSS 0.01
CVE-2025-49731 LOW
Microsoft Teams - Privilege Escalation
Jul 08, 2025
CVSS 3.1
EPSS 0.00
CVE-2025-49730 HIGH
Windows 10/11, Server 2008 - Privilege Escalation via QoS Scheduler TOCTOU
Jul 08, 2025
CVSS 7.8
EPSS 0.03
CVE-2025-49729 HIGH
Windows Server RRAS Heap Overflow Remote Code Execution
Jul 08, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-49727 HIGH
Windows Win32K < 10.0.26100.4652 Authenticated Privilege Escalation via Heap-based Buffer Overflow
Jul 08, 2025
CVSS 7.0
EPSS 0.00
CVE-2025-49726 HIGH
Windows 10/11, Server 2016/2019/2022 Use-After-Free in Notification Service
Jul 08, 2025
CVSS 7.8
EPSS 0.01
CVE-2025-49725 HIGH
Windows 10 1607-22H2, Windows 11 22H2-24H2, Windows Server 2016-2022 - Use-After-Free in Notification Service
Jul 08, 2025
CVSS 7.8
EPSS 0.01