HomeMicrosoft Patch Tuesday › December 2025

Microsoft Patch Tuesday, December 2025

·

Microsoft's December 2025 security release, published December 9, 2025: 55 updates fixing 58 CVEs, ranked by confirmed exploitation, ransomware use, and severity. Provided by Senserva.

Still active now. 1 CVE from this release is on the Senserva hot list today (as of 2026-08-20), still ranked among the most dangerous vulnerabilities right now by confirmed exploitation, ransomware use, EPSS, and severity. See the current hot list.
55
Updates (KBs)
58
CVEs fixed
6
On the CISA KEV list
21
Critical updates

Actively exploited CVEs (CISA KEV)

CVE-2025-24990Windows Agere Modem Driver Elevation of Privilege VulnerabilityCVSS 7.8Exploited
CVE-2025-59230Windows Remote Access Connection Manager Elevation of Privilege VulnerabilityCVSS 7.8Exploited
CVE-2025-62221Windows Cloud Files Mini Filter Driver Elevation of Privilege VulnerabilityCVSS 7.8Exploited
CVE-2025-60710Host Process for Windows Tasks Elevation of Privilege VulnerabilityCVSS 7.8ExploitedRansomware Hot now
CVE-2025-62215Windows Kernel Elevation of Privilege VulnerabilityCVSS 7.0Exploited
CVE-2025-47827MITRE CVE-2025-47827: Secure Boot bypass in IGEL OS before 11CVSS 4.6Exploited

Other high-risk CVEs (CVSS 8.8+)

CVE-2025-49708Microsoft Graphics Component Elevation of Privilege VulnerabilityCVSS 9.9
CVE-2025-60724GDI+ Remote Code Execution VulnerabilityCVSS 9.8
CVE-2025-58715Windows Speech Runtime Elevation of Privilege VulnerabilityCVSS 8.8
CVE-2025-58716Windows Speech Runtime Elevation of Privilege VulnerabilityCVSS 8.8
CVE-2025-59295Windows URL Parsing Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-58718Remote Desktop Client Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-64678Windows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-62456Windows Resilient File System (ReFS) Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-62549Windows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityCVSS 8.8
CVE-2025-64672Microsoft SharePoint Server Spoofing VulnerabilityCVSS 8.8

Products fixed this month

Windows 10 Version 1809 for 32-bit Systems (40)Windows 10 Version 1809 for x64-based Systems (32)Windows Server 2019 (32)Microsoft Office 2019 for 32-bit editions (9)Windows 11 Version 25H2 for ARM64-based Systems (8)Windows 11 Version 25H2 for x64-based Systems (8)Microsoft SharePoint Enterprise Server 2016 (5)Microsoft SharePoint Server 2019 (5)Microsoft Office 2019 for 64-bit editions (5)Microsoft Exchange Server Subscription Edition RTM (4)

Every update in this release

All 55 update articles, worst first: anything on the CISA KEV list, then by highest CVSS. Each row links our page for the update, Microsoft's support article, and the Update Catalog for a standalone download.

UpdateSeverityMax CVSSCVEs fixedProductsAlso
KB5066586 ExploitedCritical9.998Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5066782 ExploitedCritical9.9103Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5066791 ExploitedCritical9.998Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5066793 ExploitedCritical9.9108Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5066835 ExploitedCritical9.9134Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5066780 ExploitedCritical9.9114Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5068791 ExploitedCritical9.834Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5068787 ExploitedCritical9.830Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5068840 ExploitedCritical9.830Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5068781 ExploitedCritical9.833Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5068861 ExploitedCritical9.835Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5068966 ExploitedCritical9.835Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5068865 ExploitedCritical9.833Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5068779 ExploitedCritical9.832Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5066837 ExploitedHigh8.868Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5066836 ExploitedHigh8.878Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5072033 Exploited RansomwareHigh8.834Windows 11 Version 25H2 for ARM64-based Systems, Windows 11 Version 25H2 for x64-based Systems, Windows 10 Version 1809 for 32-bit SystemsSupport · Catalog
KB5072014 Exploited RansomwareHigh8.833Windows 11 Version 25H2 for ARM64-based Systems, Windows 11 Version 25H2 for x64-based Systems, Windows 10 Version 1809 for 32-bit SystemsSupport · Catalog
KB5071544 ExploitedHigh8.826Windows 11 Version 25H2 for ARM64-based Systems, Windows 11 Version 25H2 for x64-based Systems, Windows 10 Version 1809 for 32-bit SystemsSupport · Catalog
KB5071547 ExploitedHigh8.829Windows 11 Version 25H2 for ARM64-based Systems, Windows 11 Version 25H2 for x64-based Systems, Windows 10 Version 1809 for 32-bit SystemsSupport · Catalog
KB5071413 ExploitedHigh8.828Windows 11 Version 25H2 for ARM64-based Systems, Windows 11 Version 25H2 for x64-based Systems, Windows 10 Version 1809 for 32-bit SystemsSupport · Catalog
KB5071546 ExploitedHigh8.828Windows 11 Version 25H2 for ARM64-based Systems, Windows 11 Version 25H2 for x64-based Systems, Windows 10 Version 1809 for 32-bit SystemsSupport · Catalog
KB5071417 ExploitedHigh8.830Windows 11 Version 25H2 for ARM64-based Systems, Windows 11 Version 25H2 for x64-based Systems, Windows 10 Version 1809 for 32-bit SystemsSupport · Catalog
KB5071542 ExploitedHigh8.830Windows 11 Version 25H2 for ARM64-based Systems, Windows 11 Version 25H2 for x64-based Systems, Windows 10 Version 1809 for 32-bit SystemsSupport · Catalog
KB5068864Critical9.826Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5068906Critical9.815Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5068909Critical9.815Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5068904Critical9.815Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5068908Critical9.815Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5068907Critical9.817Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5068905Critical9.818Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5071543High8.815Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5071501High8.810Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5071506High8.810Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5071505High8.810Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5071503High8.811Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5071504High8.88Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5071507High8.88Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5002815High8.81Microsoft SharePoint Server Subscription EditionSupport · Catalog
KB5002819High8.42Microsoft Office LTSC 2024 for 64-bit editions, Microsoft Office 2019 for 64-bit editions, Microsoft Office for AndroidSupport · Catalog
KB5074353High7.81Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5074204High7.81Windows 10 Version 1809 for 32-bit Systems, Windows 10 Version 1809 for x64-based Systems, Windows Server 2019Support · Catalog
KB5002821High7.84Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002804High7.84Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002816High7.84Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002802High7.84Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002806High7.84Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft Office 2019 for 32-bit editionsSupport · Catalog
KB5002820High7.86Office Online Server, Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editionsSupport · Catalog
KB5002818High7.83Office Online Server, Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editionsSupport · Catalog
KB5002817High7.85Office Online Server, Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editionsSupport · Catalog
KB5002812High7.81Microsoft Office 2019 for 32-bit editions, Microsoft Office 2019 for 64-bit editions, Microsoft 365 Apps for Enterprise for 32-bit SystemsSupport · Catalog
KB5071876High7.52Microsoft Exchange Server Subscription Edition RTM, Microsoft Exchange Server 2016 Cumulative Update 23, Microsoft Exchange Server 2019 Cumulative Update 15Support · Catalog
KB5071873High7.52Microsoft Exchange Server Subscription Edition RTM, Microsoft Exchange Server 2016 Cumulative Update 23, Microsoft Exchange Server 2019 Cumulative Update 15Support · Catalog
KB5071875High7.52Microsoft Exchange Server Subscription Edition RTM, Microsoft Exchange Server 2016 Cumulative Update 23, Microsoft Exchange Server 2019 Cumulative Update 15Support · Catalog
KB5071874High7.52Microsoft Exchange Server Subscription Edition RTM, Microsoft Exchange Server 2016 Cumulative Update 23, Microsoft Exchange Server 2019 Cumulative Update 15Support · Catalog
Take this release to your AI

Composed from the December 2025 release data above. Copy it into Claude, ChatGPT, or Copilot. Free, no sign-in.

Reference: Microsoft CVE and vulnerability management, ranked by real-world risk, and the Microsoft patching guide.
Data notice: this page is provided as is, for informational purposes only, without warranty of any kind. Senserva, LLC does not guarantee the accuracy, completeness, or timeliness of third-party data (MSRC, NVD, CISA KEV, EPSS) and accepts no liability for actions taken based on it; verify against the authoritative Microsoft advisory before acting. Built daily with Senserva Trustworthy AI. All use of this data is subject to the Senserva EULA.