Close Menu
    DevStackTipsDevStackTips
    • Home
    • News & Updates
      1. Tech & Work
      2. View All

      10 Benefits of Hiring a React.js Development Company (2025–2026 Edition)

      August 13, 2025

      From Line To Layout: How Past Experiences Shape Your Design Career

      August 13, 2025

      Hire React.js Developers in the US: How to Choose the Right Team for Your Needs

      August 13, 2025

      Google’s coding agent Jules gets critique functionality

      August 13, 2025

      The best smartphones without AI features in 2025: Expert tested and recommended

      August 13, 2025

      GPT-5 was supposed to simplify ChatGPT but now it has 4 new modes – here’s why

      August 13, 2025

      Gemini just got two of ChatGPT’s best features – and they’re free

      August 13, 2025

      I found the easiest way to send files between my Android phone and desktop – and it’s free

      August 13, 2025
    • Development
      1. Algorithms & Data Structures
      2. Artificial Intelligence
      3. Back-End Development
      4. Databases
      5. Front-End Development
      6. Libraries & Frameworks
      7. Machine Learning
      8. Security
      9. Software Engineering
      10. Tools & IDEs
      11. Web Design
      12. Web Development
      13. Web Security
      14. Programming Languages
        • PHP
        • JavaScript
      Featured

      Laravel Boost is released

      August 13, 2025
      Recent

      Laravel Boost is released

      August 13, 2025

      Frontend Standards for Optimizely Configured Commerce: Clean & Scalable Web Best Practices

      August 13, 2025

      Live Agent Escalation in Copilot Studio Using D365 Omnichannel – Architecture and Use Case

      August 13, 2025
    • Operating Systems
      1. Windows
      2. Linux
      3. macOS
      Featured

      OpenAI’s Sam Altman: GPT-5 fails to meet AGI standards amid Microsoft’s fading partnership — “it’s still missing something”

      August 13, 2025
      Recent

      OpenAI’s Sam Altman: GPT-5 fails to meet AGI standards amid Microsoft’s fading partnership — “it’s still missing something”

      August 13, 2025

      You Think You Need a Monster PC to Run Local AI, Don’t You? — My Seven-Year-Old Mid-range Laptop Says Otherwise

      August 13, 2025

      8 Registry Tweaks that will Make File Explorer Faster and Easier to Use on Windows 11

      August 13, 2025
    • Learning Resources
      • Books
      • Cheatsheets
      • Tutorials & Guides
    Home»Development»Patch Tuesday August 2025: 9 High-Risk Vulnerabilities Fixed by Microsoft

    Patch Tuesday August 2025: 9 High-Risk Vulnerabilities Fixed by Microsoft

    August 12, 2025

    Patch Tuesday August 2025

    Microsoft’s Patch Tuesday update for August 2025 includes fixes for 110 Microsoft vulnerabilities, including nine at higher risk for exploitation and an additional five vulnerabilities carrying 9+ severity ratings.

    The update, down from 130 vulnerabilities in July’s update, also included eight Chrome vulnerabilities in the Chromium-based Microsoft Edge.

    Highest-Rated Vulnerabilities: Fixed or at Lower Risk

    The highest-rated vulnerability – CVE-2025-53767, a 10.0-severity Azure OpenAI Elevation of Privilege vulnerability – has already been fully mitigated by Microsoft, as has CVE-2025-53792, a 9.1-rated Azure Portal Elevation of Privilege vulnerability.

    Three other 9+ rated vulnerabilities – CVE-2025-50171, a Remote Desktop Spoofing vulnerability, CVE-2025-50165, a Windows Graphics Component Remote Code Execution vulnerability, and CVE-2025-53766, a GDI+ Remote Code Execution vulnerability – were judged by Microsoft to be at lower risk of exploitation.

    The Patch Tuesday August 2025 update also includes 13 8.8-rated vulnerabilities – found in SQL Server, SharePoint, Windows Routing and Remote Access Service (RRAS), Windows Media, Windows Message Queuing, and Web Deploy – that Microsoft judged to be at lower risk of exploitation. One 8.8-severity vulnerability – in NTLM – was judged to be at higher risk.

    Patch Tuesday August 2025: High-risk Vulnerabilities

    Among the 10 vulnerabilities judged to be at higher risk of exploitation, CVE-2025-53786 is an 8.0-severity Exchange Server Hybrid Deployment Elevation of Privilege vulnerability that Microsoft warned about last week. About 28,000 Exchange instances remain unpatched, according to the Shadowserver foundation.

    Other high-risk vulnerabilities in the Patch Tuesday August 2025 update include:

    • CVE-2025-53778, an 8.8-rated Windows NTLM Elevation of Privilege vulnerability
    • CVE-2025-53156, a 5.5-severity Windows Storage Port Driver Information Disclosure vulnerability
    • CVE-2025-53147, a 7.0-rated Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability
    • CVE-2025-53132, an 8.0-severity Win32k Elevation of Privilege vulnerability
    • CVE-2025-50177, an 8.1-rated Microsoft Message Queuing (MSMQ) Remote Code Execution vulnerability
    • CVE-2025-50168, a 7.8-rated Win32k Elevation of Privilege vulnerability
    • CVE-2025-50167, a 7.0-severity Windows Hyper-V Elevation of Privilege vulnerability
    • CVE-2025-49743, a 6.7-severity Windows Graphics Component Elevation of Privilege vulnerability

    Fortinet and SAP were also among the vendors releasing Patch Tuesday updates today.

    Source: Read More

    Facebook Twitter Reddit Email Copy Link
    Previous ArticleFree Online Bipolar Test – BipolarTest.net
    Next Article BlackSuit Ransomware’s Infrastructure Dismantled; Crypto Worth $1M Seized

    Related Posts

    Development

    Laravel Boost is released

    August 13, 2025
    Artificial Intelligence

    Scaling Up Reinforcement Learning for Traffic Smoothing: A 100-AV Highway Deployment

    August 13, 2025
    Leave A Reply Cancel Reply

    For security, use of Google's reCAPTCHA service is required which is subject to the Google Privacy Policy and Terms of Use.

    Continue Reading

    Magnanimous is a simple and fast static website generator

    Linux

    CVE-2025-6450 – Simple Online Hotel Reservation System SQL Injection Vulnerability

    Common Vulnerabilities and Exposures (CVEs)

    CVE-2025-6755 – WordPress Game Users Share Buttons Plugin Remote Code Execution and File Deletion Vulnerability

    Common Vulnerabilities and Exposures (CVEs)

    The Ultimate Conversion Rate Optimization (CRO) Checklist

    Web Development

    Highlights

    dano – hashdeep/md5tree for media files

    July 8, 2025

    dano is a CLI tool for generating checksums of media bitstreams. The post dano –…

    How to get Apple TV+ for less than $3 a month – even if you already subscribe

    April 9, 2025

    CVE-2023-4533 – Red Hat OpenShift Remote Code Execution

    April 30, 2025

    Finally, a portable laser projector with a battery-powered tripod (and it’s on sale)

    June 12, 2025
    © DevStackTips 2025. All rights reserved.
    • Contact
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.