HomeMicrosoft Patch Tuesday › April 2025

Microsoft Patch Tuesday, April 2025

·

Microsoft's April 2025 security release, published April 8, 2025: 35 updates fixing 107 CVEs, ranked by confirmed exploitation, ransomware use, and severity. Provided by Senserva.

Still active now. 1 CVE from this release is on the Senserva hot list today (as of 2026-09-18), still ranked among the most dangerous vulnerabilities right now by confirmed exploitation, ransomware use, EPSS, and severity. See the current hot list.
35
Updates (KBs)
107
CVEs fixed
1
On the CISA KEV list
1
Ransomware-linked
0
Critical updates

Actively exploited CVEs (CISA KEV)

CVE-2025-29824Windows Common Log File System Driver Elevation of Privilege VulnerabilityCVSS 7.8ExploitedRansomware Hot now

Other high-risk CVEs (CVSS 8.8+)

CVE-2025-26669Windows Routing and Remote Access Service (RRAS) Information Disclosure VulnerabilityCVSS 8.8
CVE-2025-27477Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-27740Active Directory Certificate Services Elevation of Privilege VulnerabilityCVSS 8.8
CVE-2025-21205Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-21221Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-21222Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-26647Windows Kerberos Elevation of Privilege VulnerabilityCVSS 8.8
CVE-2025-27481Windows Telephony Service Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-29794Microsoft SharePoint Remote Code Execution VulnerabilityCVSS 8.8

Products fixed this month

Windows 10 Version 1809 for 32-bit Systems (15)Windows 10 Version 1809 for x64-based Systems (15)Windows Server 2019 (15)Microsoft Office 2019 for 32-bit editions (15)Microsoft SharePoint Server 2019 (8)Microsoft Office 2019 for 64-bit editions (8)Office Online Server (7)Microsoft SharePoint Enterprise Server 2016 (5)Microsoft 365 Apps for Enterprise for 32-bit Systems (4)Microsoft Dynamics 365 Business Central Wave 1 2024: Update 24.12 (3)

Every update in this release

All 35 update articles, worst first: anything on the CISA KEV list, then by highest CVSS. Each row links our page for the update, Microsoft's support article, and the Update Catalog for a standalone download.

UpdateSeverityMax CVSSCVEs fixedProductsAlso
KB5055519 Exploited RansomwareHigh8.873Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055526 Exploited RansomwareHigh8.877Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055518 Exploited RansomwareHigh8.859Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055528 Exploited RansomwareHigh8.865Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055523 Exploited RansomwareHigh8.882Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055527 Exploited RansomwareHigh8.873Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055547 Exploited RansomwareHigh8.843Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055521 Exploited RansomwareHigh8.860Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055609 Exploited RansomwareHigh8.839Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055596 Exploited RansomwareHigh8.839Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055561 Exploited RansomwareHigh8.842Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055570 Exploited RansomwareHigh8.842Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055581 Exploited RansomwareHigh8.847Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5055557 Exploited RansomwareHigh8.855Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5002692High8.84Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002691High8.84Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002705High8.82Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft SharePoint Server Subscription EditionSupport · Catalog
KB5055515High8.61Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5002699High7.83Office Online Server, Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editionsSupport · Catalog
KB5002704High7.83Office Online Server, Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editionsSupport · Catalog
KB5002669High7.81Microsoft Office 2016 (64-bit edition)Support · Catalog
KB5002700High7.87Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editions, Microsoft 365 Apps for Enterprise for 32-bit SystemsSupport · Catalog
KB5002623High7.87Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editions, Microsoft 365 Apps for Enterprise for 32-bit SystemsSupport · Catalog
KB5002680High7.82Office Online Server, Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editionsSupport · Catalog
KB4484432High7.81Office Online Server, Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editionsSupport · Catalog
KB5002682High7.82Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002702High7.83Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002622High7.81Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editions, Microsoft 365 Apps for Enterprise for 32-bit SystemsSupport · Catalog
KB5002588High7.81Office Online Server, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002703High7.81Office Online Server, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002701High7.81Office Online Server, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002573High7.51Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editions, Microsoft 365 Apps for Enterprise for 32-bit SystemsSupport · Catalog
KB5056717Medium5.51Microsoft Dynamics 365 Business Central Wave 1 2024: Update 24.12, Microsoft Dynamics 365 Business Central 2023 Wave 2: Update 23.18, Microsoft Dynamics 365 Business Central 2024 Wave 2: Update 25.6Support · Catalog
KB5056716Medium5.51Microsoft Dynamics 365 Business Central Wave 1 2024: Update 24.12, Microsoft Dynamics 365 Business Central 2023 Wave 2: Update 23.18, Microsoft Dynamics 365 Business Central 2024 Wave 2: Update 25.6Support · Catalog
KB5056718Medium5.51Microsoft Dynamics 365 Business Central Wave 1 2024: Update 24.12, Microsoft Dynamics 365 Business Central 2023 Wave 2: Update 23.18, Microsoft Dynamics 365 Business Central 2024 Wave 2: Update 25.6Support · Catalog
Take this release to your AI

Composed from the April 2025 release data above. Copy it into Claude, ChatGPT, or Copilot. Free, no sign-in.

Now see your own patch state.

Senserva reads your Microsoft 365, Intune, Defender, and Entra ID environment and turns this release into your list: every update still missing, on every device, ranked by what attackers are actually exploiting. The 650+ configuration checks come with it.

1Find it2Fix it3Prove it
Start my free patch auditAll you do is register.
Reference: Microsoft CVE and vulnerability management, ranked by real-world risk, and the Microsoft patching guide.
Data notice: this page is provided as is, for informational purposes only, without warranty of any kind. Senserva, LLC does not guarantee the accuracy, completeness, or timeliness of third-party data (MSRC, NVD, CISA KEV, EPSS) and accepts no liability for actions taken based on it; verify against the authoritative Microsoft advisory before acting. Built daily with Senserva Trustworthy AI. All use of this data is subject to the Senserva EULA.