logo

April 2025 Patch Tuesday: One Zero-Day and 11 Critical Vulnerabilities Among 121 CVEs

ID: 261f8f9f-8e21-592c-a4a3-de4aaf5f3e9c

STIX ID: report--261f8f9f-8e21-592c-a4a3-de4aaf5f3e9c

Feed Name: Crowdstrike Blog

Threat Score
88/100

Date Published: 2025-04-08

Date Updated: 2026-04-27

Author: Falcon Exposure Management Team

...
...

This bulletin summarizes Microsoft Patch Tuesday disclosures covering multiple high-severity vulnerabilities — notably an actively exploited zero-day in the Windows Common Log File System (CVE-2025-29824) and several critical RCE flaws in Remote Desktop Services, LDAP, Microsoft Office, TCP/IP, and Hyper-V — provides CVSS ratings, exploitation details (including that some issues require no user interaction), and recommends patching and mitigation steps.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.