Microsoft Releases Emergency Security Patch for Windows Server: Update Now or Risk Attack


  • Microsoft releases emergency patch for critical WSUS flaw enabling remote code execution
  • CVE-2025-59287 allows unauthenticated attackers to obtain SYSTEM privileges without user interaction
  • An out-of-band update has been released after public exploit code was posted online.

Microsoft has released an emergency security patch for Windows Server to fix an apparently abused critical severity flaw.

As part of its latest Patch Tuesday cumulative update (October 14, 2025), Microsoft fixed CVE-2025-59287, an “untrusted data deserialization” flaw found in Windows Server Update Service (WSUS).

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top