logo

Microsoft Vulnerabilities Drop, But Critical Flaws Double, Report Warns

ID: 683aca2d-e443-5092-8a78-a330f69a3061

STIX ID: report--683aca2d-e443-5092-8a78-a330f69a3061

Feed Name: HackRead

Threat Score
78/100

Date Published: 2026-04-21

Date Updated: 2026-04-22

Author: Deeba Ahmed

...
...

BeyondTrust’s 13th annual Microsoft Vulnerabilities Report shows overall Microsoft bug counts fell slightly but critical vulnerabilities have doubled, with alarming spikes in Microsoft Office, Windows Server, Azure and Dynamics 365; the report cites a high-impact CVE (CVE-2025-55241) enabling Global Administrator impersonation, three zero-days observed in the wild, and widespread elevation-of-privilege and non-human identity risks, urging least-privilege controls, harder guardrails, and adversarial testing.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.