Common Vulnerabilities and Exposures (CVE)

CVE-2025-54903

Feb 20, 2026 16:00:22 UTC

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

CVE-2025-54902

Feb 20, 2026 16:00:21 UTC

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

CVE-2025-54899

Feb 20, 2026 16:00:20 UTC

Free of memory not on the heap in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

CVE-2025-54898

Feb 20, 2026 16:00:20 UTC

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

CVE-2025-54897

Feb 20, 2026 16:00:19 UTC

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

CVE-2025-54896

Feb 20, 2026 16:00:18 UTC

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

CVE-2025-54895

Feb 20, 2026 16:00:18 UTC

Integer overflow or wraparound in Windows SPNEGO Extended Negotiation allows an authorized attacker to elevate privileges locally.

CVE-2025-54894

Feb 20, 2026 16:00:17 UTC

Local Security Authority Subsystem Service Elevation of Privilege Vulnerability

CVE-2025-54111

Feb 20, 2026 16:00:16 UTC

Use after free in Windows UI XAML Phone DatePickerFlyout allows an authorized attacker to elevate privileges locally.

CVE-2025-54110

Feb 20, 2026 16:00:16 UTC

Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2025-54106

Feb 20, 2026 16:00:15 UTC

Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

CVE-2025-54102

Feb 20, 2026 16:00:14 UTC

Use after free in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally.

CVE-2025-54101

Feb 20, 2026 16:00:14 UTC

Use after free in Windows SMBv3 Client allows an authorized attacker to execute code over a network.

CVE-2025-54099

Feb 20, 2026 16:00:13 UTC

Stack-based buffer overflow in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

CVE-2025-54097

Feb 20, 2026 16:00:13 UTC

Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.