Live
CVE-2025-55242: Microsoft Flags Xbox Information Disclosure Exploit – Admins Must Patch Immediately·MSFT +2.1%Delta Electronics Patches XXE Bug in EIP Builder, CISA Warns Critical Manufacturing Operators to Upgrade Now·NVDA +0.2%Mitsubishi Says No Fix Coming for MELSEC iQ-F Cleartext Credential Flaw (CVE-2025-7731)·GOOGL +1.7%California Man Sues Microsoft to Block Windows 10 Support Cutoff, Alleges Forced Obsolescence and AI Monopoly·AMZN +1.1%India’s CERT-In Issues High-Risk Alert as Microsoft’s August Patch Fixes Zero-Day and 110+ Other Vulnerabilities·MSFT +2.1%Unpatched Flaw in Siemens SINEC Traffic Analyzer Puts OT Networks at Risk of Takeover·NVDA +0.2%Rockwell Automation Patches FactoryTalk Action Manager Vulnerability That Broadcasts API Tokens·GOOGL +1.7%Microsoft's CVE-2025-53793 Advisory: Azure Stack Hub Authentication Flaw Exposes Sensitive Data·AMZN +1.1%CVE-2025-55242: Microsoft Flags Xbox Information Disclosure Exploit – Admins Must Patch Immediately·MSFT +2.1%Delta Electronics Patches XXE Bug in EIP Builder, CISA Warns Critical Manufacturing Operators to Upgrade Now·NVDA +0.2%Mitsubishi Says No Fix Coming for MELSEC iQ-F Cleartext Credential Flaw (CVE-2025-7731)·GOOGL +1.7%California Man Sues Microsoft to Block Windows 10 Support Cutoff, Alleges Forced Obsolescence and AI Monopoly·AMZN +1.1%India’s CERT-In Issues High-Risk Alert as Microsoft’s August Patch Fixes Zero-Day and 110+ Other Vulnerabilities·MSFT +2.1%Unpatched Flaw in Siemens SINEC Traffic Analyzer Puts OT Networks at Risk of Takeover·NVDA +0.2%Rockwell Automation Patches FactoryTalk Action Manager Vulnerability That Broadcasts API Tokens·GOOGL +1.7%Microsoft's CVE-2025-53793 Advisory: Azure Stack Hub Authentication Flaw Exposes Sensitive Data·AMZN +1.1%

Information Disclosure

The latest Information Disclosure coverage — news, analysis, and updates from the WindowsNews.AI desk.

12 stories in view AI assisted desk updated 12:55 AM
Latest Most Read Breaking
Sort
Certification Pipeline · Compensating Controls

CVE-2025-55242: Microsoft Flags Xbox Information Disclosure Exploit – Admins Must Patch Immediately

Microsoft has published a security advisory for CVE-2025-55242, an information disclosure vulnerability that could allow unauthorized actors to access sensitive data over a network. The bug, which...

Advertisement
Azure Security · Cert-in

India’s CERT-In Issues High-Risk Alert as Microsoft’s August Patch Fixes Zero-Day and 110+ Other Vulnerabilities

India’s Computer Emergency Response Team (CERT-In) issued a high-risk advisory on August 18, 2025, warning that millions of Windows, Office, and Azure users face looming danger unless they...

SE Security Desk·47w ago
unpatched_flaw_in_siemens.jpg
Container Security · Cve-2024-24989

Unpatched Flaw in Siemens SINEC Traffic Analyzer Puts OT Networks at Risk of Takeover

Siemens disclosed a cluster of seven high-severity vulnerabilities in its SINEC Traffic Analyzer, a PROFINET monitoring appliance, that together could allow attackers to crash the system, escalate...

SE Security Desk·48w ago
Cisa · Cve-2025-7532

Rockwell Automation Patches FactoryTalk Action Manager Vulnerability That Broadcasts API Tokens

Rockwell Automation has confirmed a high-severity information disclosure vulnerability in its FactoryTalk Action Manager software that broadcasts reusable API tokens over local WebSocket channels,...

SE Security Desk·48w ago
Air-gapped · Authentication

Microsoft's CVE-2025-53793 Advisory: Azure Stack Hub Authentication Flaw Exposes Sensitive Data

Microsoft has published an urgent security advisory for CVE-2025-53793, an improper authentication vulnerability in Azure Stack Hub that could allow unauthenticated attackers to access sensitive...

SE Security Desk·49w ago
Cve-2025-50157 · Extended Security Updates

Critical RRAS Vulnerability Leaks Windows Server Memory—Patch CVE-2025-50157 Immediately

Microsoft has issued an urgent security update for a memory disclosure flaw in Windows Routing and Remote Access Service (RRAS) that could let attackers remotely extract sensitive data from unpatched...

SE Security Desk·49w ago
Azure Local · Azure Stack Hub

CVE-2025-53765: Microsoft Warns of Azure Stack Hub Data Leak Through Authorized Local Access

Microsoft’s Security Response Center has published an advisory for CVE-2025-53765, an information disclosure vulnerability in Azure Stack Hub that permits an attacker with local authorization to...

SE Security Desk·49w ago
Asr · Buffer Over-read

Microsoft Office Buffer Over-Read Bugs Strike Word and Excel: What Enterprises Must Patch Now

Microsoft has rolled out crucial patches for two high-severity buffer over-read vulnerabilities in Microsoft Word and Excel, both enabling local attackers to extract sensitive memory contents. The...

SE Security Desk·49w ago
Cross-site Scripting · Csp

Microsoft Patches Dynamics 365 On-Prem Flaw CVE-2025-53728 That Exposes Sensitive Data

Microsoft has released a security update to fix an information disclosure vulnerability in Dynamics 365 on-premises versions, tracked as CVE-2025-53728. The flaw, classified as allowing an...

SE Security Desk·49w ago