Microsoft has released its February 2025 Patch Tuesday updates, addressing 55 security vulnerabilities, including four zero-day flaws, with two actively exploited in real-world attacks.
This month’s patch also fixes three critical remote code execution (RCE) vulnerabilities, making them among the most severe issues addressed.
Here’s a breakdown of the patched vulnerabilities:
- 19 Elevation of Privilege flaws
- 2 Security Feature Bypass flaws
- 22 Remote Code Execution flaws
- 1 Information Disclosure flaw
- 9 Denial of Service flaws
- 3 Spoofing flaws
These figures do not include an additional critical Microsoft Dynamics 365 Sales elevation of privilege vulnerability or 10 Microsoft Edge vulnerabilities, which were patched separately on February 6.
Bijay Pokharel
Bijay Pokharel is the Founder and Editor-in-Chief of Abijita, an independent technology and cybersecurity news publication established in 2017. A specialist in cybersecurity journalism, Bijay covers vulnerability research, malware analysis, enterprise data breaches, digital privacy, and emerging technologies. His work translates complex technical threats into precise, accessible, and actionable intelligence for security professionals and general readers alike. His reporting and investigative coverage are routinely cited and republished across leading technology and security media.



