Oct 2025: Windows Push Notification Information Disclosure Vulnerability
CVE-2025-59209 Published on October 14, 2025
Windows Push Notification Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core allows an authorized attacker to disclose information locally.
Weakness Type
What is an Information Disclosure Vulnerability?
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
CVE-2025-59209 has been classified to as an Information Disclosure vulnerability or weakness.
Products Associated with CVE-2025-59209
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2025-59209 are published in these products:
Affected Versions
Microsoft Windows 10 Version 1507:- Version 10.0.10240.0 and below 10.0.10240.21161 is affected.
- Version 10.0.14393.0 and below 10.0.14393.8519 is affected.
- Version 10.0.17763.0 and below 10.0.17763.7919 is affected.
- Version 10.0.19044.0 and below 10.0.19044.6456 is affected.
- Version 10.0.19045.0 and below 10.0.19045.6456 is affected.
- Version 10.0.22621.0 and below 10.0.22621.6060 is affected.
- Version 10.0.22631.0 and below 10.0.22631.6060 is affected.
- Version 10.0.22631.0 and below 10.0.22631.6060 is affected.
- Version 10.0.26100.0 and below 10.0.26100.6899 is affected.
- Version 10.0.26200.0 and below 10.0.26200.6899 is affected.
- Version 6.2.9200.0 and below 6.2.9200.25722 is affected.
- Version 6.2.9200.0 and below 6.2.9200.25722 is affected.
- Version 6.3.9600.0 and below 6.3.9600.22824 is affected.
- Version 6.3.9600.0 and below 6.3.9600.22824 is affected.
- Version 10.0.14393.0 and below 10.0.14393.8519 is affected.
- Version 10.0.14393.0 and below 10.0.14393.8519 is affected.
- Version 10.0.17763.0 and below 10.0.17763.7919 is affected.
- Version 10.0.17763.0 and below 10.0.17763.7919 is affected.
- Version 10.0.20348.0 and below 10.0.20348.4294 is affected.
- Version 10.0.25398.0 and below 10.0.25398.1913 is affected.
- Version 10.0.26100.0 and below 10.0.26100.6899 is affected.
- Version 10.0.26100.0 and below 10.0.26100.6899 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.