Microsoft rolls out fix for broken Windows Start Menu search
2026-04-08T13:23:32Z•9a7b98a1263430acad0043cbe82a339d0d36248386ffd823d35fda54be64f641
CVE-2025-59528allen-bradleybluehammercritical-infrastructuredns-hijackfile-uploadflowisefrostarmadagpugpubreachiranian-actorsmicrosoftmicrosoft-365mikrotikninja-formsplcrcerockwellrowhammersnowflake','data-theft','saas-breach'start-menutp-linkwindowswindows-zero-daywordpress
What happened
Bleeping Computer roundup: Microsoft pushed a server-side fix for a Windows 11 Start Menu search outage and fixed other Outlook/Windows issues, while multiple actively exploited and high-impact vulnerabilities and incidents were reported. Notable items include a critical unauthenticated arbitrary-file-upload/RCE in the Ninja Forms File Uploads premium WordPress add-on (actively exploited), a maximum-severity Flowise RCE (CVE-2025-59528) under active exploitation, a GPUBreach GPU rowhammer attack enabling system takeover, a leaked Windows privilege-escalation zero-day ("BlueHammer"), and an FBI
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 9a7b98a1263430acad0043cbe82a339d0d36248386ffd823d35fda54be64f641
- Enrichment time
- 2026-04-08T13:23:32Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.