Live

Vulnerability

The latest Vulnerability coverage — news, analysis, and updates from the WindowsNews.AI desk.

12 stories in view AI assisted desk updated 8:13 AM
Latest Most Read Breaking
Sort
Kernelsyncleaks · Privilege Escalation

Windows 11 KernelSyncLeaks Vulnerability: Critical Privilege Escalation Threat

In the shadowed corridors of Windows 11's security architecture, a newly disclosed vulnerability codenamed KernelSyncLeaks has emerged as a critical threat vector, exposing millions of devices to...

Advertisement
Cybersecurity · Hitachi Energy

Critical UNEM Flaws Expose Industrial Systems – Patch Now

Hitachi Energy's UNEM (Unified Network Management) platform has recently been found to contain critical vulnerabilities that could expose industrial control systems (ICS) to cyberattacks. These...

SE Security Desk·77w ago
Cisa · Cybersecurity

CISA flags critical New Rock bugs enabling remote code execution, bypass exploits

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent advisory regarding multiple critical vulnerabilities in New Rock Technologies' devices, posing significant risks to...

SE Security Desk·77w ago
Cve-2025-21396 · Elevation Of Privilege

Microsoft Account MFA Bypass Exploited: Critical CVE-2025-21396 Patched

A newly discovered critical vulnerability in Microsoft Account authentication (CVE-2025-21396) exposes millions of users to potential account takeovers. This elevation of privilege flaw, rated 9.8/10...

SE Security Desk·77w ago
Azure Ai · Cve-2025-21415

Azure AI Face flaw CVE-2025-21415 (CVSS 8.8) lets attackers hijack facial data access.

Microsoft has disclosed a critical elevation of privilege vulnerability (CVE-2025-21415) affecting its Azure AI Face service, potentially allowing attackers to gain unauthorized access to sensitive...

AI AI & Copilot Desk·77w ago
Cisa · Cybersecurity

CISA Warns of Critical Rockwell FactoryTalk Flaws in Industrial Systems

Rockwell Automation's FactoryTalk software suite, widely used in industrial control systems (ICS), has been found to contain multiple critical vulnerabilities that could allow attackers to execute...

SE Security Desk·77w ago
Cve-2024-10497 · Cve-2024-10498

Schneider Electric PowerLogic Flaws Allow Remote Code Execution in OT Systems

Schneider Electric has issued urgent security advisories for multiple critical vulnerabilities affecting its Power Logic products, which could allow attackers to execute arbitrary code, cause...

SE Security Desk·77w ago
Cisa · Cybersecurity

CISA Urges Immediate Patching for Critical Rockwell FactoryTalk Flaws

Rockwell Automation has issued urgent security advisories regarding multiple critical vulnerabilities in its FactoryTalk software suite, which could allow attackers to execute remote code, escalate...

SE Security Desk·77w ago
Cve-2024-12703 · Cybersecurity

Schneider Electric patches critical CVE-2024-12703 auth bypass in RemoteConnect and SCADAPack

Critical Cybersecurity Advisory: Schneider Electric Vulnerability in ICS Software (CVE-2024-12703) Schneider Electric has issued a critical security advisory regarding a newly discovered...

SE Security Desk·77w ago