CVE-2025-62449 Microsoft Visual Studio Code CoPilot Chat Extension Security Feature Bypass Vulnerability

Improper limitation of a pathname to a restricted directory (‘path traversal’) in Visual Studio Code CoPilot Chat Extension allows an authorized attacker to bypass a security feature locally.


CVE-2025-62215 Windows Kernel Elevation of Privilege Vulnerability

Concurrent execution using shared resource with improper synchronization (‘race condition’) in Windows Kernel allows an authorized attacker to elevate privileges locally.


CVE-2025-64657 Azure Application Gateway Elevation of Privilege Vulnerability

Stack-based buffer overflow in Software for Open Networking in the Cloud (SONiC) allows an unauthorized attacker to elevate privileges over a network.


CVE-2025-49752 Azure Bastion Elevation of Privilege Vulnerability

Information published.


CVE-2025-64660 GitHub Copilot and Visual Studio Code Security Feature Bypass Vulnerability

Improper access control in GitHub Copilot and Visual Studio Code allows an authorized attacker to bypass a security feature over a network.


CVE-2025-62459 Microsoft Defender Portal Spoofing Vulnerability

Information published.


CVE-2025-62207 Azure Monitor Elevation of Privilege Vulnerability

Information published.


CVE-2025-62209 Windows License Manager Information Disclosure Vulnerability

Updated the build numbers. This is an informational update only.


CVE-2025-62208 Windows License Manager Information Disclosure Vulnerability

Updated the build numbers. This is an informational update only.


CVE-2025-62203 Microsoft Excel Remote Code Execution Vulnerability

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.


This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

AbuseIPDB Contributor Badge