log privacy

  1. CVE-2025-47979: Mitigating Information Disclosure in Windows Failover Cluster Logs

    Microsoft has published an advisory for CVE-2025-47979, an information‑disclosure vulnerability in the Windows Failover Cluster service that can cause sensitive cluster data to be written to accessible log files, creating a local, low‑privilege attack path that should be treated as operationally...