Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to elevate privileges locally.
https://www.helpnetsecurity.com/2025/04/08/patch-tuesday-microsoft-zero-day-cve-2025-29824/
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-27727