Microsoft Windows Search Component Denial-of-Service Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in the Windows Search Component of Microsoft Windows. This issue arises from improper input validation, which allows an authorized attacker to disrupt service locally. The vulnerability affects several different versions and ranges of Windows, including various editions of Windows Server, Windows 10, and Windows 11.

Impact

Exploitation of this vulnerability leads to a significant denial-of-service condition, causing a high impact on availability.

Remediation

Users can apply the security update for this vulnerability, which is available through the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5066586, KB5066835, KB5066873, KB5066780, KB5066791, and KB5066782.

Added: Oct 14, 2025, 6:47 PM
Updated: Oct 14, 2025, 9:18 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
3.3
remediation
0.0
relevance
0.7
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.