CVE-2025-64660 GitHub Copilot and Visual Studio Code Remote Code Execution Vulnerability

The following revisions have been made: 1) In the Security Updates table, corrected the impact entries to Remote Code Execution. 2) The CVSS scores have been updated. These are informational changes only. Customers who have successfully installed the update do not need to take any further action.


CVE-2025-54114 Windows Connected Devices Platform Service Elevation of Privilege Vulnerability

Updated Security Impact values. This is an informational change only.


CVE-2025-64657 Azure Application Gateway Elevation of Privilege Vulnerability

Stack-based buffer overflow in Software for Open Networking in the Cloud (SONiC) allows an unauthorized attacker to elevate privileges over a network.


CVE-2025-49752 Azure Bastion Elevation of Privilege Vulnerability

Information published.


CVE-2025-64660 GitHub Copilot and Visual Studio Code Security Feature Bypass Vulnerability

Improper access control in GitHub Copilot and Visual Studio Code allows an authorized attacker to bypass a security feature over a network.


CVE-2025-62459 Microsoft Defender Portal Spoofing Vulnerability

Information published.


CVE-2025-62207 Azure Monitor Elevation of Privilege Vulnerability

Information published.


CVE-2025-59245 Microsoft SharePoint Online Elevation of Privilege Vulnerability

Information published.


CVE-2025-54099 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

Acknowledgement added. This is an informational change only.


CVE-2025-64655 Dynamics OmniChannel SDK Storage Containers Elevation of Privilege Vulnerability

Improper authorization in Dynamics OmniChannel SDK Storage Containers allows an unauthorized attacker to elevate privileges over a network.


This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

AbuseIPDB Contributor Badge