Skip to content
Critical Windows Imaging Component Flaw CVE-2025-50165 Exploits JPG Files

Critical Windows Imaging Component Flaw CVE-2025-50165 Exploits JPG Files

First seen 23 Dec 2025, 17:01 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 13:27 UTC

ESET researchers analyzed CVE-2025-50165, a serious vulnerability in the Windows Imaging Component that allows remote code execution through specially crafted JPG files. The flaw was identified by Zscaler ThreatLabz, and while Microsoft rated its severity as critical, they assessed that the exploitability is less likely. ESET's analysis pinpointed the faulty code and reproduced the crash.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 182d ago How this analysis works

More articles in this cluster (2)

Following this threat?

Track Microsoft and CVE-2025-50165 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed