CVE-2025-54114 Windows Connected Devices Platform Service Elevation of Privilege Vulnerability

Updated Security Impact values. This is an informational change only.


CVE-2025-62459 Microsoft Defender Portal Spoofing Vulnerability

Information published.


CVE-2025-62207 Azure Monitor Elevation of Privilege Vulnerability

Information published.


CVE-2025-59245 Microsoft SharePoint Online Elevation of Privilege Vulnerability

Information published.


CVE-2025-54099 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

Acknowledgement added. This is an informational change only.


CVE-2025-64655 Dynamics OmniChannel SDK Storage Containers Elevation of Privilege Vulnerability

Improper authorization in Dynamics OmniChannel SDK Storage Containers allows an unauthorized attacker to elevate privileges over a network.


CVE-2025-64656 Application Gateway Elevation of Privilege Vulnerability

Out-of-bounds read in Application Gateway allows an unauthorized attacker to elevate privileges over a network.


CVE-2025-60726 Microsoft Excel Information Disclosure Vulnerability

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.


CVE-2025-62449 Microsoft Visual Studio Code CoPilot Chat Extension Security Feature Bypass Vulnerability

Improper limitation of a pathname to a restricted directory (‘path traversal’) in Visual Studio Code CoPilot Chat Extension allows an authorized attacker to bypass a security feature locally.


CVE-2025-62215 Windows Kernel Elevation of Privilege Vulnerability

Concurrent execution using shared resource with improper synchronization (‘race condition’) in Windows Kernel allows an authorized attacker to elevate privileges locally.


This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

AbuseIPDB Contributor Badge