7.8
CVE-2025-55701 - Windows Authentication Elevation of Privilege Vulnerability
Improper validation of specified type of input in Microsoft Windows allows an authorized attacker to elevate privileges locally.
6.5
CVE-2025-55700 - Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
7
CVE-2025-55689 - Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges locally.
7.4
CVE-2025-55687 - Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Resilient File System (ReFS) allows an unauthorized attacker to elevate privileges locally.
7
CVE-2025-55686 - Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges locally.
7
CVE-2025-55685 - Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges locally.
7
CVE-2025-55681 - Desktop Windows Manager Elevation of Privilege Vulnerability
Out-of-bounds read in Windows DWM allows an authorized attacker to elevate privileges locally.
7.8
CVE-2025-55677 - Windows Device Association Broker Service Elevation of Privilege Vulnerability
Untrusted pointer dereference in Windows Device Association Broker service allows an authorized attacker to elevate privileges locally.
5.5
CVE-2025-55676 - Windows USB Video Class System Driver Information Disclosure Vulnerability
Generation of error message containing sensitive information in Windows USB Video Driver allows an authorized attacker to disclose information locally.
7
CVE-2025-55340 - Windows Remote Desktop Protocol Security Feature Bypass
Improper authentication in Windows Remote Desktop Protocol allows an authorized attacker to bypass a security feature locally.