Microsoft has unveiled security patches to tackle two critical-rated vulnerabilities affecting Bing and Power Pages, one of which is currently being actively exploited in the wild.
The vulnerabilities are outlined as follows –
CVE-2025-21355 (CVSS score: 8.6) – Microsoft Bing Remote Code Execution Flaw
CVE-2025-24989 (CVSS score: 8.2) – Microsoft Power Pages Elevation of Privilege Flaw
