Critical active threat
CVE-2025-29824 Microsoft Windows Common Log File System (CLFS) Driver Use-After-Free
- Actively exploited (CISA KEV)
- Listed on CISA KEV
Microsoft Windows Use-After-Free is on CISA KEV — confirmed in-the-wild exploitation. Expect continued targeting while the issue remains on the catalog.