Complex Mathematics

Microsoft issues emergency Windows server security patch – update now or risk attack



  • Microsoft issues emergency patch for a critical WSUS flaw enabling remote code execution
  • CVE-2025-59287 allows unauthenticated attackers to gain SYSTEM privileges without user interaction
  • An out-of-band update was released after public exploit code surfaced online

Microsoft has issued an emergency Windows server security patch to fix a critical severity flaw apparently abused in the wild.

As part of its most recent Patch Tuesday cumulative update (October 14, 2025), Microsoft addressed CVE-2025-59287, a “deserialization of untrusted data” flaw found in Windows Server Update Service (WSUS).





Source link