CVE-2025-60710
Last modified
CVE-2025-60710 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. Improper link resolution before file access ('link following') in Host Process for Windows Tasks allows an authorized attacker to elevate privileges locally.. CISA has confirmed active exploitation in the wild. EPSS estimates a 4.60% chance of exploitation in the next 30 days.
Description
Improper link resolution before file access ('link following') in Host Process for Windows Tasks allows an authorized attacker to elevate privileges locally.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitation Status
This vulnerability is listed in CISA’s Known Exploited Vulnerabilities catalog, confirming active exploitation in the wild. Federal agencies must remediate by .
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows 11 24h2 | < 10.0.26100.7392 |
| Microsoft | Windows 11 25h2 | < 10.0.26200.7392 |
| Microsoft | Windows Server 2025 | < 10.0.26100.7392 |
References
- https://www.vicarius.io/vsociety/posts/cve-2025-60710-mitigation-script-eop-vulnerability-in-host-process-for-windows-tasksMitigation, Third Party Advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-60710US Government Resource
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2025-60710?
How severe is CVE-2025-60710?
How do I fix CVE-2025-60710?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-60705Improper access control in Windows Client-Side Caching (CSC)…7.8
- CVE-2025-60706Out-of-bounds read in Windows Hyper-V allows an authorized a…5.5
- CVE-2025-60707Use after free in Multimedia Class Scheduler Service (MMCSS)…7.8
- CVE-2025-60708Untrusted pointer dereference in Storvsp.sys Driver allows a…6.5
- CVE-2025-60709Out-of-bounds read in Windows Common Log File System Driver …7.8
- CVE-2025-6071Use of Hard-coded Cryptographic Key vulnerability in ABB RMC…6.3
- CVE-2025-60711Protection mechanism failure in Microsoft Edge (Chromium-bas…6.3
- CVE-2025-60713Untrusted pointer dereference in Windows Routing and Remote …7.8
- CVE-2025-60714Heap-based buffer overflow in Windows OLE allows an unauthor…7.8
- CVE-2025-60715Heap-based buffer overflow in Windows Routing and Remote Acc…8
- CVE-2025-60716Use after free in Windows DirectX allows an authorized attac…7
- CVE-2025-60717Use after free in Windows Broadcast DVR User Service allows …7
Are you affected by CVE-2025-60710?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
