Microsoft has released a patch for CVE-2025-53786, an Elevation of Privilege vulnerability that affects Microsoft Exchange Server 2016 and 2019.
Microsoft defender vulnerability management RSS
Microsoft has released a detailed set of FAQs and recommendations for users who are affected by the XZ Utils vulnerability which allows a threat actor to exploit SSH operations and get remote access.