
CVE-2025-47979 – Microsoft Failover Cluster Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-47979
14 Oct 2025 — Insertion of sensitive information into log file in Windows Failover Cluster allows an authorized attacker to disclose information locally. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47979 • CWE-532: Insertion of Sensitive Information into Log File •

CVE-2025-59258 – Windows Active Directory Federation Services (ADFS) Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-59258
14 Oct 2025 — Insertion of sensitive information into log file in Active Directory Federation Services allows an unauthorized attacker to disclose information locally. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59258 • CWE-532: Insertion of Sensitive Information into Log File •

CVE-2025-59235 – Microsoft Excel Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-59235
14 Oct 2025 — Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59235 • CWE-125: Out-of-bounds Read •

CVE-2025-59211 – Windows Push Notification Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-59211
14 Oct 2025 — Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core allows an authorized attacker to disclose information locally. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59211 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2025-59204 – Windows Management Services Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-59204
14 Oct 2025 — Use of uninitialized resource in Windows Management Services allows an authorized attacker to disclose information locally. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59204 • CWE-908: Use of Uninitialized Resource •

CVE-2025-59186 – Windows Kernel Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-59186
14 Oct 2025 — Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized attacker to disclose information locally. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59186 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2025-58717 – Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-58717
14 Oct 2025 — Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-58717 • CWE-125: Out-of-bounds Read •

CVE-2025-55700 – Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-55700
14 Oct 2025 — Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-55700 • CWE-125: Out-of-bounds Read •

CVE-2025-55676 – Windows USB Video Class System Driver Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-55676
14 Oct 2025 — Generation of error message containing sensitive information in Windows USB Video Driver allows an authorized attacker to disclose information locally. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-55676 • CWE-209: Generation of Error Message Containing Sensitive Information •

CVE-2025-55336 – Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-55336
14 Oct 2025 — Exposure of sensitive information to an unauthorized actor in Windows Cloud Files Mini Filter Driver allows an authorized attacker to disclose information locally. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-55336 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •