
CVE-2025-21329 – MapUrlToZone Security Feature Bypass Vulnerability
https://notcve.org/view.php?id=CVE-2025-21329
14 Jan 2025 — MapUrlToZone Security Feature Bypass Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21329 • CWE-41: Improper Resolution of Path Equivalence •

CVE-2025-21217 – Windows NTLM Spoofing Vulnerability
https://notcve.org/view.php?id=CVE-2025-21217
14 Jan 2025 — Windows NTLM Spoofing Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21217 • CWE-693: Protection Mechanism Failure •

CVE-2025-21389 – Windows upnphost.dll Denial of Service Vulnerability
https://notcve.org/view.php?id=CVE-2025-21389
14 Jan 2025 — Windows upnphost.dll Denial of Service Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21389 • CWE-400: Uncontrolled Resource Consumption •

CVE-2025-21341 – Windows Digital Media Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2025-21341
14 Jan 2025 — Windows Digital Media Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21341 • CWE-125: Out-of-bounds Read •

CVE-2025-21327 – Windows Digital Media Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2025-21327
14 Jan 2025 — Windows Digital Media Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21327 • CWE-125: Out-of-bounds Read •

CVE-2025-21320 – Windows Kernel Memory Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-21320
14 Jan 2025 — Windows Kernel Memory Information Disclosure Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21320 • CWE-532: Insertion of Sensitive Information into Log File •

CVE-2025-21306 – Windows Telephony Service Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2025-21306
14 Jan 2025 — Windows Telephony Service Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21306 • CWE-122: Heap-based Buffer Overflow •

CVE-2025-21303 – Windows Telephony Service Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2025-21303
14 Jan 2025 — Windows Telephony Service Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21303 • CWE-122: Heap-based Buffer Overflow •

CVE-2025-21302 – Windows Telephony Service Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2025-21302
14 Jan 2025 — Windows Telephony Service Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21302 • CWE-122: Heap-based Buffer Overflow •

CVE-2025-21298 – Windows OLE Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2025-21298
14 Jan 2025 — Windows OLE Remote Code Execution Vulnerability This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Office Word. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of RTF files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage t... • https://github.com/ynwarcs/CVE-2025-21298 • CWE-416: Use After Free •