Microsoft reports 7.8-rated zero day, plus 56 more in December Patch Tuesday
theregister.com·1d
🔓Hacking
Preview
Report Post

Happy December Patch Tuesday to all who celebrate. This month’s patch party includes one Microsoft flaw under exploitation, plus two others listed as publicly known – but just 57 CVEs in total from Redmond.

There’s also a fix for a critical Notepad++ bug that, according to security sleuth Kevin Beaumont, is being abused by attackers in China.

Plus, software security vendors Ivanti and Fortinet both issued patches for critical security holes in their products, so those two should be high on sys-admins’ and security teams’ list of things to do today.

Microsoft patches

Let’s start our look at Microsoft’s relatively quiet final patch-a-thon for 2025 by considering CVE-2025-62221, a 7.8-CVSS-rated Windows Clo…

Similar Posts

Loading similar posts...