CVE-2025-60710
HIGHImproper link resolution before file access ('link following') in Host Process for Windows Tasks allows an authorized attacker to elevate privileges locally.
Published: 11/11/2025Modified: 4/14/2026
References (4)
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-60710Vendor Advisoryhttps://www.vicarius.io/vsociety/posts/cve-2025-60710-detection-script-eop-vulnerability-in-host-process-for-windows-tasksThird Party Advisoryhttps://www.vicarius.io/vsociety/posts/cve-2025-60710-mitigation-script-eop-vulnerability-in-host-process-for-windows-tasksMitigationThird Party Advisoryhttps://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-60710US Government Resource