logo

Microsoft fixes 63 vulnerabilities, including 2 zero-days

ID: c9cd47a3-580f-5d92-ac21-473961b1acef

STIX ID: report--c9cd47a3-580f-5d92-ac21-473961b1acef

Feed Name: CyberScoop

Threat Score
78/100

Date Published: 2025-02-11

Date Updated: 2026-04-21

Author: Greg Otto

...
...

Microsoft released a security update fixing 63 vulnerabilities across Excel, Office, Windows CoreMessaging, Windows Storage and other components; among them are two actively exploited zero-days (a Windows Storage improper link resolution allowing file deletion and a heap overflow in the Ancillary Function Driver for WinSock enabling privilege escalation). Several high-severity remote-code-execution and privilege-escalation flaws — many rated likely to be exploited and with low attack complexity or no privilege/user interaction required — pose widespread risk to organizations, and Microsoft advises prioritizing patches.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.