HomeMicrosoft Patch Tuesday › April 2025

Microsoft Patch Tuesday, April 2025

·

Microsoft's April 2025 security release, published April 8, 2025: 35 updates fixing 107 CVEs, ranked by confirmed exploitation, ransomware use, and severity. Provided by Senserva.

Still active now. 1 CVE from this release is on the Senserva hot list today (as of 2026-08-30), still ranked among the most dangerous vulnerabilities right now by confirmed exploitation, ransomware use, EPSS, and severity. See the current hot list.
35
Updates (KBs)
107
CVEs fixed
1
On the CISA KEV list
1
Ransomware-linked
0
Critical updates

Actively exploited CVEs (CISA KEV)

CVE-2025-29824Windows Common Log File System Driver Elevation of Privilege VulnerabilityCVSS 7.8ExploitedRansomware Hot now

Other high-risk CVEs (CVSS 8.8+)

CVE-2025-26669Windows Routing and Remote Access Service (RRAS) Information Disclosure VulnerabilityCVSS 8.8
CVE-2025-27477Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-27740Active Directory Certificate Services Elevation of Privilege VulnerabilityCVSS 8.8
CVE-2025-21205Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-21221Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-21222Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-26647Windows Kerberos Elevation of Privilege VulnerabilityCVSS 8.8
CVE-2025-27481Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-29794Microsoft SharePoint Remote Code Execution VulnerabilityCVSS 8.8

Products fixed this month

Windows 10 Version 1809 for 32-bit Systems (15)Windows 10 Version 1809 for x64-based Systems (15)Windows Server 2019 (15)Microsoft Office 2019 for 32-bit editions (15)Microsoft SharePoint Server 2019 (8)Microsoft Office 2019 for 64-bit editions (8)Office Online Server (7)Microsoft SharePoint Enterprise Server 2016 (5)Microsoft 365 Apps for Enterprise for 32-bit Systems (4)Microsoft Dynamics 365 Business Central Wave 1 2024: Update 24.12 (3)

Every update in this release

All 35 update articles, worst first: anything on the CISA KEV list, then by highest CVSS. Each row links our page for the update, Microsoft's support article, and the Update Catalog for a standalone download.

UpdateSeverityMax CVSSCVEs fixedProductsAlso
KB5055519 Exploited RansomwareHigh8.873Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055526 Exploited RansomwareHigh8.877Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055518 Exploited RansomwareHigh8.859Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055528 Exploited RansomwareHigh8.865Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055523 Exploited RansomwareHigh8.882Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055527 Exploited RansomwareHigh8.873Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055547 Exploited RansomwareHigh8.843Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055521 Exploited RansomwareHigh8.860Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055609 Exploited RansomwareHigh8.839Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055596 Exploited RansomwareHigh8.839Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055561 Exploited RansomwareHigh8.842Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055570 Exploited RansomwareHigh8.842Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055581 Exploited RansomwareHigh8.847Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055557 Exploited RansomwareHigh8.855Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5002692High8.84Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002691High8.84Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002705High8.82Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft SharePoint Server Subscription EditionSupport · Catalog
KB5055515High8.61Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5002699High7.83Office Online Server, Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editionsSupport · Catalog
KB5002704High7.83Office Online Server, Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editionsSupport · Catalog
KB5002669High7.81Microsoft Office 2016 (64-bit edition)Support · Catalog
KB5002700High7.87Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editions, Microsoft 365 Apps for Enterprise for 32-bit SystemsSupport · Catalog
KB5002623High7.87Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editions, Microsoft 365 Apps for Enterprise for 32-bit SystemsSupport · Catalog
KB5002680High7.82Office Online Server, Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editionsSupport · Catalog
KB4484432High7.81Office Online Server, Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editionsSupport · Catalog
KB5002682High7.82Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002702High7.83Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002622High7.81Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editions, Microsoft 365 Apps for Enterprise for 32-bit SystemsSupport · Catalog
KB5002588High7.81Office Online Server, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002703High7.81Office Online Server, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002701High7.81Office Online Server, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002573High7.51Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editions, Microsoft 365 Apps for Enterprise for 32-bit SystemsSupport · Catalog
KB5056717Medium5.51Microsoft Dynamics 365 Business Central Wave 1 2024: Update 24.12, Microsoft Dynamics 365 Business Central 2023 Wave 2: Update 23.18, Microsoft Dynamics 365 Business Central 2024 Wave 2: Update 25.6Support · Catalog
KB5056716Medium5.51Microsoft Dynamics 365 Business Central Wave 1 2024: Update 24.12, Microsoft Dynamics 365 Business Central 2023 Wave 2: Update 23.18, Microsoft Dynamics 365 Business Central 2024 Wave 2: Update 25.6Support · Catalog
KB5056718Medium5.51Microsoft Dynamics 365 Business Central Wave 1 2024: Update 24.12, Microsoft Dynamics 365 Business Central 2023 Wave 2: Update 23.18, Microsoft Dynamics 365 Business Central 2024 Wave 2: Update 25.6Support · Catalog
Take this release to your AI

Composed from the April 2025 release data above. Copy it into Claude, ChatGPT, or Copilot. Free, no sign-in.

Now see the same thing in your own tenant.

Siemserva by Senserva reads your Microsoft 365, Intune, Defender, and Entra ID environment and returns every missing update ranked by what is actually being exploited, alongside all 650+ configuration checks.

1Find it2Fix it3Prove it
Start my free auditAll you do is register.
Reference: Microsoft CVE and vulnerability management, ranked by real-world risk, and the Microsoft patching guide.
Data notice: this page is provided as is, for informational purposes only, without warranty of any kind. Senserva, LLC does not guarantee the accuracy, completeness, or timeliness of third-party data (MSRC, NVD, CISA KEV, EPSS) and accepts no liability for actions taken based on it; verify against the authoritative Microsoft advisory before acting. Built daily with Senserva Trustworthy AI. All use of this data is subject to the Senserva EULA.