Microsoft released security updates to fix 67 vulnerabilities in Windows and software, with one flaw under active attack.
The zero-day flaw CVE-2025-33053 in WebDAV allows remote code execution but has low attack complexity.
Another vulnerability CVE-2025-33073 in SMB client is likely to be exploited with a risk score of 8.8, enabling 'SYSTEM' level control.
Microsoft addressed 10 critical vulnerabilities, with notable absence of a fix for a new weakness in Windows Server 2025. Adobe, Mozilla, and Google also released security updates.