High - CVE-2025-47988 - Improper control of generation of code...
Improper control of generation of code ('code injection') in Azure Monitor Agent allows an unauthorized attacker to execute code over an adjacent network.
Medium - CVE-2025-48001 - Time-of-check time-of-use (toctou) race...
Time-of-check time-of-use (toctou) race condition in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.