Security
Headlines
HeadlinesLatestCVEs

Latest News

CVE-2025-3052: Cert CC: CVE-2025-3052 InsydeH2O Secure Boot Bypass

**What kind of security feature could be bypassed by successfully exploiting this vulnerability?** An attacker who successfully exploited this vulnerability could bypass Secure Boot.

Microsoft Security Response Center
#vulnerability#Windows Secure Boot#Security Vulnerability
CVE-2025-33069: Windows App Control for Business Security Feature Bypass Vulnerability

Improper verification of cryptographic signature in App Control for Business (WDAC) allows an unauthorized attacker to bypass a security feature locally.

CVE-2025-33052: Windows DWM Core Library Information Disclosure Vulnerability

**What type of information could be disclosed by this vulnerability?** The type of information that could be disclosed if an attacker successfully exploited this vulnerability is uninitialized stack memory.