logo

The September 2025 Security Update Review

ID: 602e08ad-13e9-5ee0-b099-b77655b517fa

STIX ID: report--602e08ad-13e9-5ee0-b099-b77655b517fa

Feed Name: Zero Day Initiative (ZDI) Blog

Threat Score
55/100

Date Published: 2025-09-09

Date Updated: 2026-05-01

Author: Dustin Childs

...
...

This Patch Tuesday analysis reviews September Microsoft updates and highlights multiple vulnerabilities—several Critical-rated code execution bugs and a large number of elevation-of-privilege issues—affecting Graphics, Office (notably Excel), SMB/NTFS, Azure components, SQL Server, Defender Firewall, and others; many require authentication or user interaction, some can lead to SYSTEM or root compromise, and the report notes info leaks, security feature bypasses, and DoS fixes while stating no active exploitation is reported and recommending patching and hardening.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.