Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2025-59244: NTLM Hash Disclosure Spoofing Vulnerability

According to the CVSS metric, user interaction is required (UI:R). What interaction would the user have to do?

A user interacting with the file in multiple ways will cause the NTLM hash to be leaked. A few interactions which trigger this leak include:

  • Opening the parent folder in Explorer
  • Clicking the file (any mouse button)
  • Dragging the file
  • Deleting the file
Microsoft Security Response Center
#vulnerability#Windows Core Shell#Security Vulnerability

Microsoft Security Response Center: Latest News

CVE-2025-12441: Chromium: CVE-2025-12441 Out of bounds read in V8