CVE-2025-59194General(microsoft / windows_11_22h2)

MEDIUMCVSS 7.0 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Prioritize remediation for microsoft windows_11_22h2 systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

Use of uninitialized resource in Windows Kernel allows an authorized attacker to elevate privileges locally.

4.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-908

Priority

MEDIUM

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • windows_11_22h2
  • windows_11_23h2
  • windows_11_24h2
  • windows_11_25h2

Threat summary

  • Public PoC and exploit tooling are both present
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Exploit tool or code specified in 1 signal
  • PoC mentioned or linked in 1 signal
  • General: 2 classified signals
  • Peaked 2d ago at 1 mentions (2026-02-12); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
windows_11_22h2windows_11_23h2windows_11_24h2windows_11_25h2windows_server_2022_23h2windows_server_2025

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-02-12: 1Mentions · 2026-06-03: 1Mentions · 2026-06-14: 1PoC Mentioned / Linked · 2026-02-12: 1Exploit Tool / Code · 2026-02-12: 102-1206-0306-14
Signal classification2 categories
General
266.7%
PoC
133.3%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-02-121
PoC1
2026-06-031
General1
2026-06-141
General1
Full discourse3 posts
  • Faathin FTI'26 (Taking break)@shiromewo
    General

    Alhamdulillah... selesai ugha :3. Aight, here's the write up to anyone who interested! https://medium.com/@kawaiighost/a-story-behind-cve-2025-59194-e9c01bd68034

    Post summary

    The tweet posts a link to a Medium article about CVE‑2025‑59194 but offers no additional technical, exploit or mitigation details.

    65038113.1K
    11.1K followersView on X
  • Faathin²⁵ (Hiatus)@shiromewo
    PoC

    PoCnya di sini ya. https://github.com/kawaii-ghost/CVE-2025-59194

    Post summary

    The post announces a Proof of Concept for CVE‑2025‑59194 and provides a GitHub link to the code.

    0001631.1K
    4.9K followersView on X
  • Faathin 167'26@shiromewo
    General

    Should be no obstacle anymore to write CVE-2025-59194 write up

    Post summary

    The post merely notes that writing a write‑up for CVE‑2025‑59194 is now possible, without further technical or actionable information.

    000101.6K
    9.2K followersView on X
CPE platform detail6 entries

6 of 6 entries

PartVendorProductVersionTarget SWTarget HW
OSmicrosoftwindows_11_22h2---
OSmicrosoftwindows_11_23h2---
OSmicrosoftwindows_11_24h2---
OSmicrosoftwindows_11_25h2---
OSmicrosoftwindows_server_2022_23h2---
OSmicrosoftwindows_server_2025---

Explore more