Headline
CVE-2025-59282: Internet Information Services (IIS) Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability
Concurrent execution using shared resource with improper synchronization (‘race condition’) in Microsoft Input Method Editor (IME) allows an authorized attacker to execute code locally.