The March 2025 Patch Tuesday release has recorded seven zero-day vulnerabilities, matching the highest number reported in a single month, according to Satnam Narang, Senior Staff Research Engineer at Tenable. This mirrors trends from August and September 2024, when a similar number of zero-day exploits were detected. Notably, six of this month’s zero-days were actively exploited in the wild, surpassing totals from January and February 2025 combined.

Among the critical vulnerabilities patched were CVE-2025-26633, a security feature bypass in the Microsoft Management Console (MMC), and CVE-2025-24985, a Windows Fast FAT File System Driver flaw—the first of its kind to be exploited as a zero-day. Additionally, Microsoft addressed three NTFS vulnerabilities, including a remote code execution flaw (CVE-2025-24993), and a privilege escalation bug (CVE-2025-24983) in the Windows Win32 Kernel Subsystem, which requires a race condition to exploit.