Home
MEDIUM: 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C 10.0.17763.0 (custom) before 10.0.17763.8027
affected
10.0.17763.0 (custom) before 10.0.17763.8027
affected
10.0.17763.0 (custom) before 10.0.17763.8027
affected
10.0.20348.0 (custom) before 10.0.20348.4405
affected
10.0.19044.0 (custom) before 10.0.19044.6575
affected
10.0.19045.0 (custom) before 10.0.19045.6575
affected
10.0.26100.0 (custom) before 10.0.26100.7171
affected
10.0.26200.0 (custom) before 10.0.26200.7171
affected
10.0.22631.0 (custom) before 10.0.22631.6199
affected
10.0.22631.0 (custom) before 10.0.22631.6199
affected
10.0.25398.0 (custom) before 10.0.25398.1965
affected
10.0.26100.0 (custom) before 10.0.26100.7171
affected
10.0.26100.0 (custom) before 10.0.26100.7171
affected
Description
Insertion of sensitive information into sent data in Windows Speech allows an authorized attacker to disclose information locally.
Problem types
CWE-201: Insertion of Sensitive Information Into Sent Data
Product status
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59509 (Windows Speech Recognition Information Disclosure Vulnerability)