Patch tracker / Products / Windows Server 2025
Windows Server 2025: vulnerabilities and security updates
Every CVE affecting Windows Server 2025 and the Microsoft update (KB) that fixes it, ranked by real-world risk. Actively exploited (CISA KEV) first, then EPSS exploit probability, on top of CVSS severity.
CVEs
202
Updates (KBs)
9
Actively exploited (KEV)
2
Critical Severity
16
CVEs affecting Windows Server 2025
Updates (KBs) for Windows Server 2025
| Update | Released | Severity | CVSS | EPSS | CVEs | Status |
|---|---|---|---|---|---|---|
| KB5082063 | 2026-04-14 | Critical | 9.8 | 73% | 124 | KEV |
| KB5083769 | 2026-04-14 | Critical | 9.8 | 73% | 121 | KEV |
| KB5046630 | 2024-11-12 | Medium | 6.5 | 84% | 1 | KEV |
| KB5087423 | 2026-06-09 | Critical | 9.8 | 80% | 66 | - |
| KB5087539 | 2026-06-09 | Critical | 9.8 | 80% | 66 | - |
| KB5089466 | 2026-06-09 | Critical | 9.8 | 4.7% | 61 | - |
| KB5089549 | 2026-06-09 | Critical | 9.8 | 4.7% | 61 | - |
| KB5049994 | 2025-01-14 | High | 7.5 | 4.6% | 7 | - |
| KB5053593 | 2025-03-11 | Medium | 4.3 | 3.2% | 1 | - |
Ranked across all products on the Microsoft patch tracker and the CVE and vulnerability management reference. Browse every product: product index.
Most searched on Senserva right now
KB5099540: the full CVE list
KB5099538: patch details
KB5094123: the full CVE list
KB5099539 install notes and severity
CVE-2026-53412 exploit status
KB5101650 download and what it fixes
KB5120708 install notes and severity
CVE-2026-55040 exploit status
KB5101001: patch details
KB5094128: the full CVE list