<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://exploit-radar.com/en/flux/marques/microsoft.xml</id>
  <title>Exploit Radar: exploited Microsoft vulnerabilities</title>
  <subtitle>The latest additions to CISA’s catalog of exploited vulnerabilities for Microsoft products.</subtitle>
  <link rel="self" type="application/atom+xml" href="https://exploit-radar.com/en/flux/marques/microsoft.xml"/>
  <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/microsoft/"/>
  <updated>2026-09-25T00:00:00Z</updated>
  <author><name>Exploit Radar</name></author>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-65660/</id>
    <title>CVE-2026-65660 — Microsoft SharePoint Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-65660/"/>
    <updated>2026-09-25T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on September 25, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-81963/</id>
    <title>CVE-2026-81963 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-81963/"/>
    <updated>2026-09-08T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. Start with internet-facing devices. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on September 8, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-85880/</id>
    <title>CVE-2026-85880 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-85880/"/>
    <updated>2026-09-08T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. Start with internet-facing devices. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on September 8, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2019-1068/</id>
    <title>CVE-2019-1068 — Microsoft SQL Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2019-1068/"/>
    <updated>2026-08-26T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on August 26, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-33824/</id>
    <title>CVE-2026-33824 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-33824/"/>
    <updated>2026-08-18T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. Start with internet-facing devices. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on August 18, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-55040/</id>
    <title>CVE-2026-55040 — Microsoft SharePoint Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-55040/"/>
    <updated>2026-08-18T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on August 18, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-68820/</id>
    <title>CVE-2026-68820 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-68820/"/>
    <updated>2026-08-11T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. Start with internet-facing devices. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on August 11, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-50522/</id>
    <title>CVE-2026-50522 — Microsoft SharePoint Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-50522/"/>
    <updated>2026-07-22T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on July 22, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-58644/</id>
    <title>CVE-2026-58644 — Microsoft SharePoint Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-58644/"/>
    <updated>2026-07-16T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on July 16, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-56164/</id>
    <title>CVE-2026-56164 — Microsoft SharePoint Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-56164/"/>
    <updated>2026-07-14T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on July 14, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-56155/</id>
    <title>CVE-2026-56155 — Microsoft AD FS</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-56155/"/>
    <updated>2026-07-14T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. Start with internet-facing devices. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on July 14, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-45659/</id>
    <title>CVE-2026-45659 — Microsoft SharePoint Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-45659/"/>
    <updated>2026-07-01T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on July 1, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2008-4250/</id>
    <title>CVE-2008-4250 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2008-4250/"/>
    <updated>2026-05-20T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on May 20, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2009-1537/</id>
    <title>CVE-2009-1537 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2009-1537/"/>
    <updated>2026-05-20T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on May 20, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2010-0249/</id>
    <title>CVE-2010-0249 — Microsoft Internet Explorer / Edge (legacy)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2010-0249/"/>
    <updated>2026-05-20T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on May 20, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2010-0806/</id>
    <title>CVE-2010-0806 — Microsoft Internet Explorer / Edge (legacy)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2010-0806/"/>
    <updated>2026-05-20T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on May 20, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-41091/</id>
    <title>CVE-2026-41091 — Microsoft Defender</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-41091/"/>
    <updated>2026-05-20T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on May 20, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-45498/</id>
    <title>CVE-2026-45498 — Microsoft Defender</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-45498/"/>
    <updated>2026-05-20T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on May 20, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-42897/</id>
    <title>CVE-2026-42897 — Microsoft Exchange Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-42897/"/>
    <updated>2026-05-15T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on May 15, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-32202/</id>
    <title>CVE-2026-32202 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-32202/"/>
    <updated>2026-04-28T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on April 28, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-33825/</id>
    <title>CVE-2026-33825 — Microsoft Defender</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-33825/"/>
    <updated>2026-04-22T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on April 22, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2009-0238/</id>
    <title>CVE-2009-0238 — Microsoft Office</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2009-0238/"/>
    <updated>2026-04-14T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on April 14, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-32201/</id>
    <title>CVE-2026-32201 — Microsoft SharePoint Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-32201/"/>
    <updated>2026-04-14T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on April 14, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-21529/</id>
    <title>CVE-2023-21529 — Microsoft Exchange Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-21529/"/>
    <updated>2026-04-13T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on April 13, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2012-1854/</id>
    <title>CVE-2012-1854 — Microsoft Office</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2012-1854/"/>
    <updated>2026-04-13T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on April 13, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-36424/</id>
    <title>CVE-2023-36424 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-36424/"/>
    <updated>2026-04-13T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on April 13, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-60710/</id>
    <title>CVE-2025-60710 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-60710/"/>
    <updated>2026-04-13T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 14 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on April 13, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-20963/</id>
    <title>CVE-2026-20963 — Microsoft SharePoint Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-20963/"/>
    <updated>2026-03-18T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on March 18, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2008-0015/</id>
    <title>CVE-2008-0015 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2008-0015/"/>
    <updated>2026-02-17T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 17, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-43468/</id>
    <title>CVE-2024-43468 — Microsoft Configuration Manager</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-43468/"/>
    <updated>2026-02-12T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 12, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-21510/</id>
    <title>CVE-2026-21510 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-21510/"/>
    <updated>2026-02-10T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 10, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-21513/</id>
    <title>CVE-2026-21513 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-21513/"/>
    <updated>2026-02-10T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 10, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-21514/</id>
    <title>CVE-2026-21514 — Microsoft Office</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-21514/"/>
    <updated>2026-02-10T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 10, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-21519/</id>
    <title>CVE-2026-21519 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-21519/"/>
    <updated>2026-02-10T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 10, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-21533/</id>
    <title>CVE-2026-21533 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-21533/"/>
    <updated>2026-02-10T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 10, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-21525/</id>
    <title>CVE-2026-21525 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-21525/"/>
    <updated>2026-02-10T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 10, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-21509/</id>
    <title>CVE-2026-21509 — Microsoft Office</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-21509/"/>
    <updated>2026-01-26T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on January 26, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-20805/</id>
    <title>CVE-2026-20805 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-20805/"/>
    <updated>2026-01-13T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on January 13, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2009-0556/</id>
    <title>CVE-2009-0556 — Microsoft Office</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2009-0556/"/>
    <updated>2026-01-07T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on January 7, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-62221/</id>
    <title>CVE-2025-62221 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-62221/"/>
    <updated>2025-12-09T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on December 9, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-62215/</id>
    <title>CVE-2025-62215 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-62215/"/>
    <updated>2025-11-12T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on November 12, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-59287/</id>
    <title>CVE-2025-59287 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-59287/"/>
    <updated>2025-10-24T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 24, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-33073/</id>
    <title>CVE-2025-33073 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-33073/"/>
    <updated>2025-10-20T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 20, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-24990/</id>
    <title>CVE-2025-24990 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-24990/"/>
    <updated>2025-10-14T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 14, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-59230/</id>
    <title>CVE-2025-59230 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-59230/"/>
    <updated>2025-10-14T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 14, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2011-3402/</id>
    <title>CVE-2011-3402 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2011-3402/"/>
    <updated>2025-10-06T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 6, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2013-3918/</id>
    <title>CVE-2013-3918 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2013-3918/"/>
    <updated>2025-10-06T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 6, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2010-3962/</id>
    <title>CVE-2010-3962 — Microsoft Internet Explorer / Edge (legacy)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2010-3962/"/>
    <updated>2025-10-06T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 6, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2021-43226/</id>
    <title>CVE-2021-43226 — Microsoft Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2021-43226/"/>
    <updated>2025-10-06T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on October 6, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2007-0671/</id>
    <title>CVE-2007-0671 — Microsoft Office</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2007-0671/"/>
    <updated>2025-08-12T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. For cloud services, follow the guidance from Microsoft. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on August 12, 2025.</summary>
  </entry>
</feed>
