Microsoft published Security Update Guide entries for CVE-2025-67030 and CVE-2026-21716, adding two newly tracked vulnerabilities to its advisory catalog. The references indicate both issues were disclosed through Microsoft's official vulnerability portal, with one entry tied to a 2025 CVE identifier and the other to a 2026 identifier.
The available records provide only limited public detail, listing the CVE identifiers and publication through the Microsoft Security Response Center without a synopsis or technical description. Organizations that rely on Microsoft products should monitor the corresponding advisory pages for severity, affected products, exploitability information, and patch guidance as Microsoft updates the entries.

See real exploitation activity before you spend the cycle.
2 events from the most recent confirmed update back to the earliest known activity.
Microsoft added CVE-2026-21716 to its Security Update Guide. No further synopsis or technical details are provided in the reference.
Microsoft added CVE-2025-67030 to its Security Update Guide. No further synopsis or technical details are provided in the reference.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.