Live
CVE-2025-59248 Exchange Spoofing Vulnerability: Critical Patch Released·MSFT +2.1%CVE-2025-59249: Critical Exchange Server EoP Vulnerability Patched·NVDA +0.2%Critical Exchange Hybrid flaw CVE-2025-53786 enables privilege escalation in email systems·GOOGL +1.7%Final public security patches for Exchange 2016/2019 released; hybrid app enforcement begins.·AMZN +1.1%Exchange Server 2016/2019 End of Support: Migration Strategies and Security Risks·MSFT +2.1%Windows Server 2025 Schema Replication Risk During Exchange Updates·NVDA +0.2%Exchange 2016/2019 End-of-Support Deadline Looms: Hybrid Enforcement Windows and Migration Imperatives·GOOGL +1.7%Microsoft Ships September 2025 Exchange Hotfixes to Keep Hybrid Apps Running as October 31 Deadline Looms·AMZN +1.1%CVE-2025-59248 Exchange Spoofing Vulnerability: Critical Patch Released·MSFT +2.1%CVE-2025-59249: Critical Exchange Server EoP Vulnerability Patched·NVDA +0.2%Critical Exchange Hybrid flaw CVE-2025-53786 enables privilege escalation in email systems·GOOGL +1.7%Final public security patches for Exchange 2016/2019 released; hybrid app enforcement begins.·AMZN +1.1%Exchange Server 2016/2019 End of Support: Migration Strategies and Security Risks·MSFT +2.1%Windows Server 2025 Schema Replication Risk During Exchange Updates·NVDA +0.2%Exchange 2016/2019 End-of-Support Deadline Looms: Hybrid Enforcement Windows and Migration Imperatives·GOOGL +1.7%Microsoft Ships September 2025 Exchange Hotfixes to Keep Hybrid Apps Running as October 31 Deadline Looms·AMZN +1.1%

Exchange Server

The latest Exchange Server coverage — news, analysis, and updates from the WindowsNews.AI desk.

12 stories in view AI assisted desk updated 11:11 PM
Latest Most Read Breaking
Sort
Cve 2025 60724 · Exchange Server

CVE-2025-59248 Exchange Spoofing Vulnerability: Critical Patch Released

Microsoft has urgently addressed a significant security threat to enterprise email systems with the release of patches for CVE-2025-59248, a spoofing vulnerability affecting Microsoft Exchange...

Advertisement
End Of Support · Exchange Online

Exchange Server 2016/2019 End of Support: Migration Strategies and Security Risks

Microsoft has officially ended support for Exchange Server 2016 and Exchange Server 2019 as of October 14, 2025, marking a critical inflection point for organizations still running these on-premises...

IT Enterprise IT Desk·40w ago
Active Directory · Exchange Schema

Windows Server 2025 Schema Replication Risk During Exchange Updates

Microsoft has issued a critical warning to IT administrators about a potentially devastating Active Directory schema replication issue that can occur when applying Exchange Server cumulative updates...

IT Enterprise IT Desk·40w ago
April 2025 Hotfix · Cloud Migration

Exchange 2016/2019 End-of-Support Deadline Looms: Hybrid Enforcement Windows and Migration Imperatives

Microsoft's Exchange engineering team has issued a final T-minus-30-days warning: support for Exchange Server 2016 and Exchange Server 2019 will end on October 14, 2025. After that date, businesses...

SE Security Desk·44w ago
August 2025 · Cisa

Microsoft Ships September 2025 Exchange Hotfixes to Keep Hybrid Apps Running as October 31 Deadline Looms

Microsoft released a targeted set of Hotfix Updates (HUs) for Exchange Server this September, delivering a non‑security fix while ensuring the newly engineered dedicated Exchange hybrid application...

SE Security Desk·45w ago
Cisa-ed-25-02 · Cloud-mitigations

CISA Emergency Directive Targets Exchange Hybrid Flaw in August Patch Tuesday Deluge

The Cybersecurity and Infrastructure Security Agency (CISA) issued an emergency directive late Tuesday, ordering federal agencies to secure on-premises Exchange servers within hours after a newly...

SE Security Desk·48w ago
Azuread Retirement · Copilot

100+ Patches, a Kerberos Crisis, and Exchange's Last Stand: Unpacking Microsoft's August Security Blitz

Microsoft didn’t just drop a routine Patch Tuesday in August 2025. The company shipped fixes for over 100 security flaws, unveiled a one-time Extended Security Update (ESU) program that gives...

AI AI & Copilot Desk·48w ago
Cve-2025-50165 · Cve-2025-53766

Microsoft’s August Update Plugs Kerberos Zero-Day; Two 9.8-Rated RCEs Demand Immediate Patching

Administrators rushed to patch domain controllers this week as Microsoft’s August 2025 Patch Tuesday landed with a publicly disclosed Kerberos elevation-of-privilege flaw (CVE-2025-53779) and two...

SE Security Desk·48w ago
Cve-2025-53779 · Cybersecurity

Domain Controllers at Risk: Microsoft’s August Update Closes Kerberos dMSA Vulnerability Amid 100+ Fixes

Microsoft’s August 2025 Patch Tuesday release lands with an urgent fix for a Kerberos vulnerability that could allow attackers to escalate to domain administrator, alongside more than a dozen other...

SE Security Desk·48w ago