Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2025-59282: Internet Information Services (IIS) Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability

Concurrent execution using shared resource with improper synchronization (‘race condition’) in Microsoft Input Method Editor (IME) allows an authorized attacker to execute code locally.

Microsoft Security Response Center
#vulnerability#microsoft#rce#auth#Inbox COM Objects#Security Vulnerability

Microsoft Security Response Center: Latest News

CVE-2025-11756: Chromium: CVE-2025-11756 Use after free in Safe Browsing