Microsoft Windows Search Component Denial-of-Service Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in the Windows Search Component of Microsoft Windows. This issue arises from improper input validation, which allows an unauthorized attacker to disrupt service locally. The vulnerability affects several different versions and ranges of Windows, including various editions of Windows 10, Windows 11, Windows Server 2022, and Windows Server 2016, among others.

Impact

Exploitation of this vulnerability leads to a significant denial-of-service condition, causing a high impact on availability.

Remediation

Users can apply the security update for this vulnerability, which is available through the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5066791, KB5066793, KB5066835, KB5066874, KB5066877, KB5066836, and KB5066586.

Added: Oct 14, 2025, 7:07 PM
Updated: Oct 14, 2025, 9:24 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.4
remediation
7.7
relevance
0.7
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.