Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 8.8
CVE-2025-21190
Windows Telephony Service Remote Code Execution Vulnerability
Windows 10 1507
10.0.10240.20915 / 10.0.14393.7785+
HIGH 7.1
CVE-2025-21194
Microsoft Surface Security Feature Bypass Vulnerability
Surface Hub 2s Firmware
No fix yet
HIGH 7.0
CVE-2025-21184
Windows Core Messaging Elevation of Privileges Vulnerability
Windows 10 1507
10.0.10240.20915 / 10.0.14393.7785+
MEDIUM 6.0
CVE-2025-21188
Azure Network Watcher VM Extension Elevation of Privilege Vulnerability
Azure Network Watcher
1.4.3563.1+
HIGH 7.5
CVE-2025-21181
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Windows 10 1507
10.0.10240.20915 / 10.0.14393.7785+
HIGH 7.4
CVE-2025-21182
Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability
Windows 11 24h2
10.0.26100.3107+
HIGH 7.4
CVE-2025-21183
Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability
Windows 11 24h2
10.0.26100.3107+
HIGH 8.8
CVE-2025-21279
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Edge Chromium
133.0.3065.51+
HIGH 8.8
CVE-2025-21283
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Edge Chromium
133.0.3065.51+
HIGH 8.8
CVE-2025-21342
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Edge Chromium
133.0.3065.51+
HIGH 8.8
CVE-2025-21408
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Edge Chromium
133.0.3065.51+
HIGH 8.8
CVE-2025-21177
Server-side request forgery (ssrf) in Microsoft Dynamics 365 Sales allows an authorized attacker to elevate privileges over a network.
Dynamics 365 Sales
Mitigation only
MEDIUM 5.3
CVE-2025-21253
Microsoft Edge for IOS and Android Spoofing Vulnerability
Edge
No fix yet
HIGH 8.8
CVE-2025-21415
Authentication bypass by spoofing in Azure AI Face Service allows an authorized attacker to elevate privileges over a network.
Azure Ai Face Service
Mitigation only
HIGH 8.2
CVE-2025-21396
Missing authorization in Microsoft Account allows an unauthorized attacker to elevate privileges over a network.
Account
No fix yet
MEDIUM 5.4
CVE-2025-21262
User Interface (UI) Misrepresentation of Critical Information in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing …
Edge Chromium
132.0.2957.127+
HIGH 7.4
CVE-2025-21399
Microsoft Edge (Chromium-based) Update Elevation of Privilege Vulnerability
Edge Update
1.3.195.43+
MEDIUM 6.5
CVE-2025-21185
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
Edge Chromium
132.0.2957.115+
HIGH 7.8
CVE-2025-21325
Windows Secure Kernel Mode Elevation of Privilege Vulnerability
Windows 10 21h2
10.0.19044.5371 / 10.0.19045.5371+
HIGH 8.8
CVE-2025-21413
Windows Telephony Service Remote Code Execution Vulnerability
Windows 10 1507
10.0.10240.20890 / 10.0.14393.7699+
HIGH 8.8
CVE-2025-21417
Windows Telephony Service Remote Code Execution Vulnerability
Windows 10 1507
10.0.10240.20890 / 10.0.14393.7699+
HIGH 8.8
CVE-2025-21409
Windows Telephony Service Remote Code Execution Vulnerability
Windows 10 1507
10.0.10240.20890 / 10.0.14393.7699+
HIGH 8.8
CVE-2025-21411
Windows Telephony Service Remote Code Execution Vulnerability
Windows 10 1507
10.0.10240.20890 / 10.0.14393.7699+
HIGH 7.8
CVE-2025-21395
Microsoft Access Remote Code Execution Vulnerability
365 Apps
Patch available
HIGH 7.8
CVE-2025-21402
Microsoft Office OneNote Remote Code Execution Vulnerability
Office
Patch available
HIGH 7.3
CVE-2025-21405
Visual Studio Elevation of Privilege Vulnerability
Visual Studio 2022
17.12.4+
MEDIUM 6.4
CVE-2025-21403
On-Premises Data Gateway Information Disclosure Vulnerability
On Prem Data Gateway
3000.246+
HIGH 7.8
CVE-2025-21378
Windows CSC Service Elevation of Privilege Vulnerability
Windows 10 1507
10.0.10240.20890 / 10.0.14393.7699+
HIGH 7.8
CVE-2025-21382
Windows Graphics Component Elevation of Privilege Vulnerability
Windows 10 1809
10.0.17763.6775 / 10.0.19044.5371+
HIGH 7.5
CVE-2025-21389
Uncontrolled resource consumption in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to deny service over a networ…
Windows 10 1507
10.0.10240.20890 / 10.0.14393.7699+