Microsoft Vulnerabilities Drop, But Critical Flaws Double, Report Warns
ID: 683aca2d-e443-5092-8a78-a330f69a3061
STIX ID: report--683aca2d-e443-5092-8a78-a330f69a3061
Feed Name: HackRead
BeyondTrust’s 13th annual Microsoft Vulnerabilities Report shows overall Microsoft bug counts fell slightly but critical vulnerabilities have doubled, with alarming spikes in Microsoft Office, Windows Server, Azure and Dynamics 365; the report cites a high-impact CVE (CVE-2025-55241) enabling Global Administrator impersonation, three zero-days observed in the wild, and widespread elevation-of-privilege and non-human identity risks, urging least-privilege controls, harder guardrails, and adversarial testing.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
