December 2025 vulnerabilities
Browse this month's returned vendor patches and exploitation signals, with filtering and stable pages for browsing without JavaScript.
Microsoft reports 1 vulnerability with exploitation detected in the wild this month. This defender-focused view covers 349 vulnerabilities across 349 returned patch records from 1 vendor. Filter the complete month, or browse the static page trail without JavaScript.
- Patch records
- Returned Microsoft and cross-vendor release records. One Common Vulnerabilities and Exposures (CVE) identifier can appear in more than one record.
- Tracked here
- Records joined to a vulnerability record in this tracker.
- Defender priority
- Sorts Microsoft exploitation status, Cybersecurity and Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) catalog status, severity, and tracker coverage first.
- More likely
- Microsoft's Exploitability Index rating that exploitation is more likely. It is not a claim that exploitation was detected.
Narrow the complete month
Filters use every patch record in this month, including records on later static pages.
Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as absent. “Tracked here” covers both Microsoft and cross-vendor records.
Loading the complete-month filter index…
The complete-month filter index could not be loaded, so filters are unavailable. The static records and page links below remain complete and usable.
An Exploit Prediction Scoring System (EPSS) percentage is the global 30-day exploitation probability in the wild, not specific to you. Do not read it as a complete risk score or as evidence about your environment or impact.
Microsoft Security Response Center
Cross-vendor patches
Page 1 of 2 · records 1 to 200 of 349
Microsoft Security Response Center
and 13 more
KB5071503KB5071504KB5071505KB5071506KB5071507KB5071542KB5071543KB5071544KB5071546KB5071547KB5072033KB5074204KB5074353and 13 more
KB5071501KB5071503KB5071504KB5071505KB5071506KB5071507KB5071542KB5071543KB5071544KB5071546KB5071547KB5072014KB5072033and 13 more
KB5071501KB5071503KB5071504KB5071505KB5071506KB5071507KB5071542KB5071543KB5071544KB5071546KB5071547KB5072014KB5072033and 13 more
KB5071501KB5071503KB5071504KB5071505KB5071506KB5071507KB5071542KB5071543KB5071544KB5071546KB5071547KB5072014KB5072033and 13 more
KB5071501KB5071503KB5071504KB5071505KB5071506KB5071507KB5071542KB5071543KB5071544KB5071546KB5071547KB5072014KB5072033and 11 more
KB5071501KB5071503KB5071505KB5071506KB5071542KB5071543KB5071544KB5071546KB5071547KB5072014KB5072033and 13 more
KB5071501KB5071503KB5071504KB5071505KB5071506KB5071507KB5071542KB5071543KB5071544KB5071546KB5071547KB5072014KB5072033and 1 more
KB5002820and 1 more
KB5002820and 1 more
KB5072033and 13 more
KB5071501KB5071503KB5071504KB5071505KB5071506KB5071507KB5071542KB5071543KB5071544KB5071546KB5071547KB5072014KB5072033and 13 more
KB5068787KB5068791KB5068840KB5068861KB5068864KB5068865KB5068904KB5068905KB5068906KB5068907KB5068908KB5068909KB5068966The next page could not be added in place. The ordinary page link remains available; try it again to navigate normally.