Microsoft’s August 2025 Patch Tuesday addresses 111 vulnerabilities plus 8 non-Microsoft CVEs, totaling 119, with 21 at higher risk of exploitation. Key fixes include publicly disclosed CVE-2025-53779 “BadSuccessor” (Kerberos EoP), CVE-2025-53786 (Exchange Hybrid EoP), CVE-2025-53778 (NTLM EoP), and CVE-2025-50177 (MSMQ RCE), alongside critical RCEs in GDI+, Graphics Components, and SharePoint. Flaws span Windows, Office, Exchange, SharePoint, Azure, and SQL Server, targeting RCE, EoP, spoofing, and information disclosure vectors. With Windows 10 support ending October 14, 2025, prompt patching is essential to mitigate exploitation risks across hybrid and cloud environments.
What’s new on HivePro
Get through updates and upcoming events, and more directly in your inbox