Live
CVE-2025-53137: Microsoft’s AFD.sys Patch Stops Local Attackers from Hijacking SYSTEM·MSFT +2.1%Patch Now: Critical Windows PrintWorkflowUserSvc Flaws Allow Attackers to Gain SYSTEM Privileges·NVDA +0.2%CVE-2025-50177: Critical Use-After-Free Bug in Microsoft Message Queuing Could Allow Remote Code Execution·GOOGL +1.7%Microsoft Patches Critical Use-After-Free in Windows PPP EAP‑TLS, Enabling Local Privilege Escalation·AMZN +1.1%Microsoft Patches Actively Exploited Windows DWM Use-After-Free Vulnerability CVE-2025-30400·MSFT +2.1%Patch Now: CVE-2025-49761 Windows Kernel UAF Flaw Enables SYSTEM Takeover·NVDA +0.2%Microsoft Discloses Critical PowerPoint Use-After-Free Flaw, CVE-2025-53761, Enabling Local Code Execution·GOOGL +1.7%Visio Under Fire: Microsoft Releases Patch for Use-After-Free Vulnerability CVE-2025-53730·AMZN +1.1%CVE-2025-53137: Microsoft’s AFD.sys Patch Stops Local Attackers from Hijacking SYSTEM·MSFT +2.1%Patch Now: Critical Windows PrintWorkflowUserSvc Flaws Allow Attackers to Gain SYSTEM Privileges·NVDA +0.2%CVE-2025-50177: Critical Use-After-Free Bug in Microsoft Message Queuing Could Allow Remote Code Execution·GOOGL +1.7%Microsoft Patches Critical Use-After-Free in Windows PPP EAP‑TLS, Enabling Local Privilege Escalation·AMZN +1.1%Microsoft Patches Actively Exploited Windows DWM Use-After-Free Vulnerability CVE-2025-30400·MSFT +2.1%Patch Now: CVE-2025-49761 Windows Kernel UAF Flaw Enables SYSTEM Takeover·NVDA +0.2%Microsoft Discloses Critical PowerPoint Use-After-Free Flaw, CVE-2025-53761, Enabling Local Code Execution·GOOGL +1.7%Visio Under Fire: Microsoft Releases Patch for Use-After-Free Vulnerability CVE-2025-53730·AMZN +1.1%

Use After Free

The latest Use After Free coverage — news, analysis, and updates from the WindowsNews.AI desk.

12 stories in view AI assisted desk updated 4:25 PM
Latest Most Read Breaking
Sort
Afd.sys · Cve-2025-53137

CVE-2025-53137: Microsoft’s AFD.sys Patch Stops Local Attackers from Hijacking SYSTEM

A use-after-free vulnerability in the Windows Ancillary Function Driver for WinSock (AFD.sys), tracked as CVE-2025-53137, hands any local attacker with a toehold on a machine a direct path to SYSTEM...

Advertisement
Cve-2025-30400 · Cybersecurity

Microsoft Patches Actively Exploited Windows DWM Use-After-Free Vulnerability CVE-2025-30400

A critical vulnerability in Windows Desktop Window Manager (DWM) gave attackers a direct path to SYSTEM privileges, and Microsoft confirmed it was being exploited in real-world attacks before May...

SE Security Desk·49w ago
Bsod · Cve-2025-49761

Patch Now: CVE-2025-49761 Windows Kernel UAF Flaw Enables SYSTEM Takeover

A newly disclosed use-after-free vulnerability in the Windows kernel, tracked as CVE-2025-49761, hands a reliable privilege escalation path to any attacker who already has a toehold on a target...

SE Security Desk·49w ago
Asr · Cve-2025-53761

Microsoft Discloses Critical PowerPoint Use-After-Free Flaw, CVE-2025-53761, Enabling Local Code Execution

Microsoft has issued a security advisory for a new use-after-free vulnerability in PowerPoint, tracked as CVE-2025-53761, that allows an unauthorized attacker to execute code locally. The flaw, which...

SE Security Desk·49w ago
Cve-2025-53730 · Document Parsing

Visio Under Fire: Microsoft Releases Patch for Use-After-Free Vulnerability CVE-2025-53730

Microsoft has disclosed a new use-after-free vulnerability in Visio, tracked as CVE-2025-53730, that allows an attacker to execute arbitrary code locally when a user opens a maliciously crafted...

SE Security Desk·49w ago
Browser Ecosystem · Browser Extensions

Critical Chromium Use-After-Free Flaw CVE-2025-8576 Triggers Urgent Edge, Chrome Updates

A severe use-after-free vulnerability in the Chromium extensions engine, tracked as CVE-2025-8576, is driving urgent updates across the browser ecosystem. The flaw, which carries high severity,...

SE Security Desk·49w ago
chrome_138_0_7204.jpg
Browser Security · Chrome Update

Chrome 138.0.7204.183 Fixes Critical CVE-2025-8292 Use-After-Free Flaw in Media Stream

Google has rolled out Chrome version 138.0.7204.183 to address a high-severity security flaw that could let attackers hijack systems through nothing more than a malicious webpage. Tracked as...

SE Security Desk·50w ago
Browser Patch · Browser Security

Critical Chrome Vulnerability CVE-2025-7657 in WebRTC: Risks, Impact, and Mitigation Strategies

A new high-severity vulnerability, tracked as CVE-2025-7657, has emerged as a serious threat in the cybersecurity landscape, specifically targeting Google Chrome’s WebRTC component. This critical...

SE Security Desk·53w ago
Cve-2025-49733 · Cybersecurity

Win32k Under Siege: Unpacking the Critical CVE-2025-49733 Flaw and How to Stay Safe

Microsoft has disclosed a critical security vulnerability, cataloged as CVE-2025-49733, impacting the core of the Windows operating system. The flaw resides in the Win32k subsystem, a foundational...

SE Security Desk·54w ago