Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2025-27484: Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability

Sensitive data storage in improperly locked memory in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges over a network.

Microsoft Security Response Center
#vulnerability#windows#perl#auth#Windows Universal Plug and Play (UPnP) Device Host#Security Vulnerability

Microsoft Security Response Center: Latest News

CVE-2025-4609: Chromium: CVE-2025-4609 Incorrect handle provided in unspecified circumstances in Mojo