No coverage found in monitored research blogs or news feeds.
| CVE | CVSS | Affected |
|---|---|---|
| CVE-2025-26663 | 8.1 High | Microsoft Windows 10 Version 1809 Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network. |
| CVE-2025-26670 | 8.1 High | Microsoft Windows 10 Version 1809 Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network. |
| CVE-2025-27480 | 8.1 High | Microsoft Windows Server 2019 Use after free in Remote Desktop Gateway Service allows an unauthorized attacker to execute code over a network. |
| CVE-2025-27482 | 8.1 High | Microsoft Windows Server 2019 Sensitive data storage in improperly locked memory in Remote Desktop Gateway Service allows an unauthorized attacker to execute code over a network. |
| CVE-2025-27745 | 7.8 High | Microsoft Microsoft Office 2019 Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2025-27748 | 7.8 High | Microsoft Microsoft 365 Apps for Enterprise Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2025-27749 | 7.8 High | Microsoft Microsoft Office 2019 Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2025-27752 | 7.8 High | Microsoft Microsoft 365 Apps for Enterprise Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
| CVE-2025-29791 | 7.8 High | Microsoft Microsoft Office 2019 Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2025-29824 | 7.8 High | Microsoft Windows Microsoft Windows Common Log File System (CLFS) Driver contains a use-after-free vulnerability that allows an authorized attacker to elevate privileg… |
Extracted from the publication text. Each CVE links to its tracked detail page.
Each vendor links to its Known Exploited Vulnerabilities catalog page. Only vendors that appear in the KEV catalog are listed, either because the publication cites one of their KEV entries or because it names them directly.