Claude is having a major outage. Status board · Discuss Claude

Patch Tuesday: April 2026

Each month's Microsoft security updates: what to patch first, the Critical fixes, and what CISA says attackers are exploiting.

How to use it Start with "Patch these first" for the fixes attackers are already using. Then filter the list by product or keyword, or tick "Critical only" to narrow it down.

Next Patch Tuesday: Tue 13 Oct 2026 (in 3 days)

April 2026 Patch Tuesday: Microsoft fixed 163 vulnerabilities, 8 of them Critical. 2 were already being exploited. Released Tue 14 Apr 2026.

  • 163vulnerabilities fixed
  • 8Critical
  • 2exploited before the fix
  • 1publicly disclosed
  • 4now on CISA KEV

By type: 93 elevation of privilege, 20 remote code execution, 20 information disclosure, 11 security feature bypass, 9 denial of service, 9 spoofing, 1 tampering.

Update problems? Ask in Patch Tuesday & Updates. From October 2026 a “what broke for you?” thread opens there at 1 pm Eastern every Patch Tuesday.

Patch these first

Being exploited, already public, or on CISA’s list of vulnerabilities attackers are using. Whatever else waits for testing, these should not.

CVEWhatSeverityCVSSWhy first
CVE-2026-33824Windows Internet Key Exchange (IKE) Service Extensions Remote Code ExecutionCritical9.8On CISA KEV federal deadline 21 Aug
CVE-2026-33825Microsoft Defender Elevation of PrivilegeImportant7.8Publicly disclosed On CISA KEV federal deadline 6 May Ransomware
CVE-2026-32201Microsoft SharePoint Server SpoofingImportant6.5Exploited On CISA KEV federal deadline 28 Apr
CVE-2026-32202Windows Shell SpoofingImportant4.3Exploited On CISA KEV federal deadline 12 May

Critical (8)

Microsoft’s top rating: usually code execution with little or no user action.

CVEWhatImpactCVSS
CVE-2026-33824Windows Internet Key Exchange (IKE) Service Extensions Remote Code ExecutionRemote Code Execution9.8
CVE-2026-32157Remote Desktop Client Remote Code ExecutionRemote Code Execution8.8
CVE-2026-32190Microsoft Office Remote Code ExecutionRemote Code Execution8.4
CVE-2026-33114Microsoft Word Remote Code ExecutionRemote Code Execution8.4
CVE-2026-33115Microsoft Word Remote Code ExecutionRemote Code Execution8.4
CVE-2026-33827Windows TCP/IP Remote Code ExecutionRemote Code Execution8.1
CVE-2026-33826Windows Active Directory Remote Code ExecutionRemote Code Execution8.0
CVE-2026-23666.NET Framework Denial of ServiceDenial of Service7.5

Added to CISA KEV in April 2026 (31)

Every vendor, not only Microsoft. CISA adds a vulnerability when it has evidence attackers are using it. US federal agencies must fix it by the deadline shown; for everyone else, it is the best free “patch this now” list there is.

CVEVendor and productWhatAddedFederal deadlineRansomware
CVE-2026-41940WebPros cPanel & WHM and WP2 (WordPress Squared)Missing Authentication for Critical Function30 Apr3 May 2026Known
CVE-2024-1708ConnectWise ScreenConnectPath Traversal28 Apr12 May 2026Known
CVE-2026-32202Microsoft WindowsProtection Mechanism Failure28 Apr12 May 2026
CVE-2024-57726SimpleHelp SimpleHelpSimpleHelp Missing Authorization24 Apr8 May 2026Known
CVE-2024-57728SimpleHelp SimpleHelpSimpleHelp Path Traversal24 Apr8 May 2026Known
CVE-2024-7399Samsung MagicINFO 9 ServerPath Traversal24 Apr8 May 2026
CVE-2025-29635D-Link DIR-823XCommand Injection24 Apr8 May 2026
CVE-2026-39987Marimo MarimoMarimo Remote Code Execution23 Apr7 May 2026
CVE-2026-33825Microsoft DefenderInsufficient Granularity of Access Control22 Apr6 May 2026Known
CVE-2023-27351PaperCut NG/MFImproper Authentication20 Apr4 May 2026Known
CVE-2024-27199JetBrains TeamCityRelative Path Traversal20 Apr4 May 2026Known
CVE-2025-2749Kentico Kentico XperienceKentico Xperience Path Traversal20 Apr4 May 2026
CVE-2025-32975Quest KACE Systems Management Appliance (SMA)Improper Authentication20 Apr4 May 2026
CVE-2025-48700Synacor Zimbra Collaboration Suite (ZCS)Cross-site Scripting20 Apr23 Apr 2026
CVE-2026-20122Cisco Catalyst SD-WAN MangerCisco Catalyst SD-WAN Manager Incorrect Use of Privileged APIs20 Apr23 Apr 2026
CVE-2026-20128Cisco Catalyst SD-WAN ManagerStoring Passwords in a Recoverable Format20 Apr23 Apr 2026
CVE-2026-20133Cisco Catalyst SD-WAN ManagerExposure of Sensitive Information to an Unauthorized Actor20 Apr23 Apr 2026
CVE-2026-34197Apache ActiveMQImproper Input Validation16 Apr30 Apr 2026
CVE-2009-0238Microsoft OfficeRemote Code Execution14 Apr28 Apr 2026
CVE-2026-32201Microsoft SharePoint ServerImproper Input Validation14 Apr28 Apr 2026
CVE-2012-1854Microsoft Visual Basic for Applications (VBA)Microsoft Visual Basic for Applications Insecure Library Loading13 Apr27 Apr 2026
CVE-2020-9715Adobe AcrobatUse-After-Free13 Apr27 Apr 2026
CVE-2023-21529Microsoft Exchange ServerDeserialization of Untrusted Data13 Apr27 Apr 2026Known
CVE-2023-36424Microsoft WindowsOut-of-Bounds Read13 Apr27 Apr 2026
CVE-2025-60710Microsoft WindowsLink Following13 Apr27 Apr 2026Known
CVE-2026-21643Fortinet FortiClient EMSSQL Injection13 Apr16 Apr 2026
CVE-2026-34621Adobe Acrobat and ReaderPrototype Pollution13 Apr27 Apr 2026
CVE-2026-1340Ivanti Endpoint Manager Mobile (EPMM)Code Injection8 Apr11 Apr 2026
CVE-2026-35616Fortinet FortiClient EMSImproper Access Control6 Apr9 Apr 2026
CVE-2026-3502TrueConf ClientDownload of Code Without Integrity Check2 Apr16 Apr 2026
CVE-2026-5281Google DawnUse-After-Free1 Apr15 Apr 2026

All 163 fixes

Show the full list, with a filter
CVEProductWhatSeverityCVSS
CVE-2026-33824Windows IKE ExtensionWindows Internet Key Exchange (IKE) Service Extensions Remote Code ExecutionCritical9.8
CVE-2026-32157Remote Desktop ClientRemote Desktop Client Remote Code ExecutionCritical8.8
CVE-2026-32190Microsoft OfficeMicrosoft Office Remote Code ExecutionCritical8.4
CVE-2026-33114Microsoft Office WordMicrosoft Word Remote Code ExecutionCritical8.4
CVE-2026-33115Microsoft Office WordMicrosoft Word Remote Code ExecutionCritical8.4
CVE-2026-33827Windows TCP/IPWindows TCP/IP Remote Code ExecutionCritical8.1
CVE-2026-33826Windows Active DirectoryWindows Active Directory Remote Code ExecutionCritical8.0
CVE-2026-23666.NET Framework.NET Framework Denial of ServiceCritical7.5
CVE-2026-26149Microsoft Power AppsMicrosoft Power Apps Desktop Client SpoofingImportant9.0
CVE-2026-26167Windows Push NotificationsWindows Push Notifications Elevation of PrivilegeImportant8.8
CVE-2026-26178Windows Advanced Rasterization PlatformWindows Advanced Rasterization Platform Elevation of PrivilegeImportant8.8
CVE-2026-32171Azure Logic AppsAzure Logic Apps Elevation of PrivilegeImportant8.8
CVE-2026-32225Windows ShellWindows Shell Security Feature BypassImportant8.8
CVE-2026-33120SQL ServerMicrosoft SQL Server Remote Code ExecutionImportant8.8
CVE-2026-27928Windows HelloWindows Hello Security Feature BypassImportant8.7
CVE-2026-32091Microsoft Brokering File SystemMicrosoft Brokering File System Elevation of PrivilegeImportant8.4
CVE-2026-32162Windows COMWindows COM Elevation of PrivilegeImportant8.4
CVE-2026-32221Microsoft Graphics ComponentWindows Graphics Component Remote Code ExecutionImportant8.4
CVE-2026-27912Windows KerberosWindows Kerberos Elevation of PrivilegeImportant8.0
CVE-2026-20930Windows Management ServicesWindows Management Services Elevation of PrivilegeImportant7.8
CVE-2026-23657Microsoft Office WordMicrosoft Word Remote Code ExecutionImportant7.8
CVE-2026-26143Microsoft PowerShellMicrosoft PowerShell Security Feature BypassImportant7.8
CVE-2026-26153Windows Encrypting File System (EFS)Windows Encrypted File System (EFS) Elevation of PrivilegeImportant7.8
CVE-2026-26156Role: Windows Hyper-VWindows Hyper-V Remote Code ExecutionImportant7.8
CVE-2026-26159Windows Remote Desktop Licensing ServiceRemote Desktop Licensing Service Elevation of PrivilegeImportant7.8
CVE-2026-26160Windows Remote Desktop Licensing ServiceRemote Desktop Licensing Service Elevation of PrivilegeImportant7.8
CVE-2026-26161Windows Sensor Data ServiceWindows Sensor Data Service Elevation of PrivilegeImportant7.8
CVE-2026-26162Windows OLEWindows OLE Elevation of PrivilegeImportant7.8
CVE-2026-26163Windows KernelWindows Kernel Elevation of PrivilegeImportant7.8
CVE-2026-26168Windows Ancillary Function Driver for WinSockWindows Ancillary Function Driver for WinSock Elevation of PrivilegeImportant7.8
CVE-2026-26170Microsoft PowerShellPowerShell Elevation of PrivilegeImportant7.8
CVE-2026-26172Windows Push NotificationsWindows Push Notifications Elevation of PrivilegeImportant7.8
CVE-2026-26176Windows Client Side Caching driver (csc.sys)Windows Client Side Caching driver (csc.sys) Elevation of PrivilegeImportant7.8
CVE-2026-26179Windows KernelWindows Kernel Elevation of PrivilegeImportant7.8
CVE-2026-26180Windows KernelWindows Kernel Elevation of PrivilegeImportant7.8
CVE-2026-26181Microsoft Brokering File SystemMicrosoft Brokering File System Elevation of PrivilegeImportant7.8
CVE-2026-26183Windows RPC APIRemote Access Management service/API (RPC server) Elevation of PrivilegeImportant7.8
CVE-2026-26184Windows Projected File SystemWindows Projected File System Elevation of PrivilegeImportant7.8
CVE-2026-27907Windows Storage Spaces ControllerWindows Storage Spaces Controller Elevation of PrivilegeImportant7.8
CVE-2026-27909Microsoft Windows Search ComponentWindows Search Service Elevation of PrivilegeImportant7.8
CVE-2026-27910Windows InstallerWindows Installer Elevation of PrivilegeImportant7.8
CVE-2026-27911Windows User Interface CoreWindows User Interface Core Elevation of PrivilegeImportant7.8
CVE-2026-27914Microsoft Management ConsoleMicrosoft Management Console Elevation of PrivilegeImportant7.8
CVE-2026-27915Windows Universal Plug and Play (UPnP) Device HostWindows UPnP Device Host Elevation of PrivilegeImportant7.8
CVE-2026-27916Windows Universal Plug and Play (UPnP) Device HostWindows UPnP Device Host Elevation of PrivilegeImportant7.8
CVE-2026-27918Windows ShellWindows Shell Elevation of PrivilegeImportant7.8
CVE-2026-27919Windows Universal Plug and Play (UPnP) Device HostWindows UPnP Device Host Elevation of PrivilegeImportant7.8
CVE-2026-27920Windows Universal Plug and Play (UPnP) Device HostWindows UPnP Device Host Elevation of PrivilegeImportant7.8
CVE-2026-27923Desktop Window ManagerDesktop Window Manager Elevation of PrivilegeImportant7.8
CVE-2026-27924Desktop Window ManagerDesktop Window Manager Elevation of PrivilegeImportant7.8
CVE-2026-27927Windows Projected File SystemWindows Projected File System Elevation of PrivilegeImportant7.8
CVE-2026-32069Windows Projected File SystemWindows Projected File System Elevation of PrivilegeImportant7.8
CVE-2026-32074Windows Projected File SystemWindows Projected File System Elevation of PrivilegeImportant7.8
CVE-2026-32076Windows Storage Spaces ControllerWindows Storage Spaces Controller Elevation of PrivilegeImportant7.8
CVE-2026-32077Windows Universal Plug and Play (UPnP) Device HostWindows UPnP Device Host Elevation of PrivilegeImportant7.8
CVE-2026-32078Windows Projected File SystemWindows Projected File System Elevation of PrivilegeImportant7.8
CVE-2026-32089Windows Speech Brokered ApiWindows Speech Brokered Api Elevation of PrivilegeImportant7.8
CVE-2026-32090Windows Speech Brokered ApiWindows Speech Brokered Api Elevation of PrivilegeImportant7.8
CVE-2026-32152Desktop Window ManagerDesktop Window Manager Elevation of PrivilegeImportant7.8
CVE-2026-32153Microsoft Windows SpeechWindows Speech Runtime Elevation of PrivilegeImportant7.8
CVE-2026-32154Desktop Window ManagerDesktop Window Manager Elevation of PrivilegeImportant7.8
CVE-2026-32155Desktop Window ManagerDesktop Window Manager Elevation of PrivilegeImportant7.8
CVE-2026-32158Windows Push NotificationsWindows Push Notifications Elevation of PrivilegeImportant7.8
CVE-2026-32159Windows Push NotificationsWindows Push Notifications Elevation of PrivilegeImportant7.8
CVE-2026-32160Windows Push NotificationsWindows Push Notifications Elevation of PrivilegeImportant7.8
CVE-2026-32163Windows User Interface CoreWindows User Interface Core Elevation of PrivilegeImportant7.8
CVE-2026-32164Windows User Interface CoreWindows User Interface Core Elevation of PrivilegeImportant7.8
CVE-2026-32165Windows User Interface CoreWindows User Interface Core Elevation of PrivilegeImportant7.8
CVE-2026-32168Azure Monitor AgentAzure Monitor Agent Elevation of PrivilegeImportant7.8
CVE-2026-32183Windows Snipping ToolWindows Snipping Tool Remote Code ExecutionImportant7.8
CVE-2026-32184Microsoft High Performance Compute Pack (HPC)Microsoft High Performance Compute (HPC) Pack Elevation of PrivilegeImportant7.8
CVE-2026-32189Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-32192Azure Monitor AgentAzure Monitor Agent Elevation of PrivilegeImportant7.8
CVE-2026-32197Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-32198Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-32199Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-32200Microsoft Office PowerPointMicrosoft PowerPoint Remote Code ExecutionImportant7.8
CVE-2026-32222Windows Win32K – ICOMPWindows Win32k Elevation of PrivilegeImportant7.8
CVE-2026-33095Microsoft Office WordMicrosoft Word Remote Code ExecutionImportant7.8
CVE-2026-33098Windows Container Isolation FS Filter DriverWindows Container Isolation FS Filter Driver Elevation of PrivilegeImportant7.8
CVE-2026-33101Windows Print Spooler ComponentsWindows Print Spooler Elevation of PrivilegeImportant7.8
CVE-2026-33825Microsoft DefenderMicrosoft Defender Elevation of PrivilegeImportant7.8
CVE-2026-27913Windows BitLockerWindows BitLocker Security Feature BypassImportant7.7
CVE-2026-26154Windows Server Update ServiceWindows Server Update Service (WSUS) TamperingImportant7.5
CVE-2026-26171.NET.NET Denial of ServiceImportant7.5
CVE-2026-32071Windows Local Security Authority Subsystem Service (LSASS)Windows Local Security Authority Subsystem Service (LSASS) Denial of ServiceImportant7.5
CVE-2026-32178.NET.NET SpoofingImportant7.5
CVE-2026-32203.NET and Visual Studio.NET and Visual Studio Denial of ServiceImportant7.5
CVE-2026-33096Windows HTTP.sysHTTP.sys Denial of ServiceImportant7.5
CVE-2026-33116.NET, .NET Framework, Visual Studio.NET, .NET Framework, and Visual Studio Denial of ServiceImportant7.5
CVE-2026-32156Windows Universal Plug and Play (UPnP) Device HostWindows UPnP Device Host Remote Code ExecutionImportant7.4
CVE-2026-32149Role: Windows Hyper-VWindows Hyper-V Remote Code ExecutionImportant7.3
CVE-2026-26151Windows Remote DesktopRemote Desktop SpoofingImportant7.1
CVE-2026-32188Microsoft Office ExcelMicrosoft Excel Information DisclosureImportant7.1
CVE-2026-25184Applocker Filter Driver (applockerfltr.sys)Applocker Filter Driver (applockerfltr.sys) Elevation of PrivilegeImportant7.0
CVE-2026-26152Windows Cryptographic ServicesMicrosoft Cryptographic Services Elevation of PrivilegeImportant7.0
CVE-2026-26165Windows ShellWindows Shell Elevation of PrivilegeImportant7.0
CVE-2026-26166Windows ShellWindows Shell Elevation of PrivilegeImportant7.0
CVE-2026-26173Windows Ancillary Function Driver for WinSockWindows Ancillary Function Driver for WinSock Elevation of PrivilegeImportant7.0
CVE-2026-26174Windows Server Update ServiceWindows Server Update Service (WSUS) Elevation of PrivilegeImportant7.0
CVE-2026-26177Windows Ancillary Function Driver for WinSockWindows Ancillary Function Driver for WinSock Elevation of PrivilegeImportant7.0
CVE-2026-26182Windows Ancillary Function Driver for WinSockWindows Ancillary Function Driver for WinSock Elevation of PrivilegeImportant7.0
CVE-2026-27908Windows TDI Translation Driver (tdx.sys)Windows TDI Translation Driver (tdx.sys) Elevation of PrivilegeImportant7.0
CVE-2026-27917Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys)Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys) Elevation of PrivilegeImportant7.0
CVE-2026-27921Windows TCP/IPWindows TDI Translation Driver (tdx.sys) Elevation of PrivilegeImportant7.0
CVE-2026-27922Windows Ancillary Function Driver for WinSockWindows Ancillary Function Driver for WinSock Elevation of PrivilegeImportant7.0
CVE-2026-27926Windows Cloud Files Mini Filter DriverWindows Cloud Files Mini Filter Driver Elevation of PrivilegeImportant7.0
CVE-2026-27929Windows LUAFVWindows LUA File Virtualization Filter Driver Elevation of PrivilegeImportant7.0
CVE-2026-32068Windows SSDP ServiceWindows Simple Search and Discovery Protocol (SSDP) Service Elevation of PrivilegeImportant7.0
CVE-2026-32070Windows Common Log File System DriverWindows Common Log File System Driver Elevation of PrivilegeImportant7.0
CVE-2026-32073Windows Ancillary Function Driver for WinSockWindows Ancillary Function Driver for WinSock Elevation of PrivilegeImportant7.0
CVE-2026-32075Windows Universal Plug and Play (UPnP) Device HostWindows UPnP Device Host Elevation of PrivilegeImportant7.0
CVE-2026-32080Windows WalletServiceWindows WalletService Elevation of PrivilegeImportant7.0
CVE-2026-32082Windows SSDP ServiceWindows Simple Search and Discovery Protocol (SSDP) Service Elevation of PrivilegeImportant7.0
CVE-2026-32083Windows SSDP ServiceWindows Simple Search and Discovery Protocol (SSDP) Service Elevation of PrivilegeImportant7.0
CVE-2026-32086Function Discovery Service (fdwsd.dll)Windows Function Discovery Service (fdwsd.dll) Elevation of PrivilegeImportant7.0
CVE-2026-32087Function Discovery Service (fdwsd.dll)Windows Function Discovery Service (fdwsd.dll) Elevation of PrivilegeImportant7.0
CVE-2026-32093Function Discovery Service (fdwsd.dll)Windows Function Discovery Service (fdwsd.dll) Elevation of PrivilegeImportant7.0
CVE-2026-32150Function Discovery Service (fdwsd.dll)Windows Function Discovery Service (fdwsd.dll) Elevation of PrivilegeImportant7.0
CVE-2026-32195Windows KernelWindows Kernel Elevation of PrivilegeImportant7.0
CVE-2026-32219Microsoft Brokering File SystemMicrosoft Brokering File System Elevation of PrivilegeImportant7.0
CVE-2026-32224Windows Server Update ServiceWindows Server Update Service (WSUS) Elevation of PrivilegeImportant7.0
CVE-2026-33099Windows Ancillary Function Driver for WinSockWindows Ancillary Function Driver for WinSock Elevation of PrivilegeImportant7.0
CVE-2026-33100Windows Ancillary Function Driver for WinSockWindows Ancillary Function Driver for WinSock Elevation of PrivilegeImportant7.0
CVE-2026-33104Windows Win32K – GRFXWin32k Elevation of PrivilegeImportant7.0
CVE-2026-32223Windows USB Print DriverWindows USB Printing Stack (usbprint.sys) Elevation of PrivilegeImportant6.8
CVE-2026-0390Windows Boot LoaderUEFI Secure Boot Security Feature BypassImportant6.7
CVE-2026-32167SQL ServerSQL Server Elevation of PrivilegeImportant6.7
CVE-2026-32176SQL ServerSQL Server Elevation of PrivilegeImportant6.7
CVE-2026-26155Windows Local Security Authority Subsystem Service (LSASS)Microsoft Local Security Authority Subsystem Service Information DisclosureImportant6.5
CVE-2026-27925Windows Universal Plug and Play (UPnP) Device HostWindows UPnP Device Host Information DisclosureImportant6.5
CVE-2026-32151Windows ShellWindows Shell Information DisclosureImportant6.5
CVE-2026-32201Microsoft Office SharePointMicrosoft SharePoint Server SpoofingImportant6.5
CVE-2026-32072Windows Active DirectoryActive Directory SpoofingImportant6.2
CVE-2026-26169Windows Kernel MemoryWindows Kernel Memory Information DisclosureImportant6.1
CVE-2026-32088Windows Biometric ServiceWindows Biometric Service Security Feature BypassImportant6.1
CVE-2026-32196Windows Admin CenterWindows Admin Center SpoofingImportant6.1
CVE-2026-33822Microsoft Office WordMicrosoft Word Information DisclosureImportant6.1
CVE-2026-32226.NET Framework.NET Framework Denial of ServiceImportant5.9
CVE-2026-23653GitHub Copilot and Visual Studio CodeGitHub Copilot and Visual Studio Code Information DisclosureImportant5.7
CVE-2026-23670Windows Virtualization-Based Security (VBS) EnclaveWindows Virtualization-Based Security (VBS) Security Feature BypassImportant5.7
CVE-2026-20806Windows COMWindows COM Server Information DisclosureImportant5.5
CVE-2026-27930Windows GDIWindows GDI Information DisclosureImportant5.5
CVE-2026-27931Windows GDIWindows GDI Information DisclosureImportant5.5
CVE-2026-32079Windows File ExplorerWeb Account Manager Information DisclosureImportant5.5
CVE-2026-32081Windows File ExplorerPackage Catalog Information DisclosureImportant5.5
CVE-2026-32084Windows File ExplorerWindows Print Spooler Information DisclosureImportant5.5
CVE-2026-32085Windows Remote Procedure CallRemote Procedure Call Information DisclosureImportant5.5
CVE-2026-32181Microsoft WindowsConnected User Experiences and Telemetry Service Denial of ServiceImportant5.5
CVE-2026-32212Universal Plug and Play (upnp.dll)Universal Plug and Play (upnp.dll) Information DisclosureImportant5.5
CVE-2026-32214Universal Plug and Play (upnp.dll)Universal Plug and Play (upnp.dll) Information DisclosureImportant5.5
CVE-2026-32215Windows KernelWindows Kernel Information DisclosureImportant5.5
CVE-2026-32217Windows KernelWindows Kernel Information DisclosureImportant5.5
CVE-2026-32218Windows KernelWindows Kernel Information DisclosureImportant5.5
CVE-2026-33103Microsoft Dynamics 365 (on-premises)Microsoft Dynamics 365 (On-Premises) Information DisclosureImportant5.5
CVE-2026-20928Windows Recovery Environment AgentWindows Recovery Environment Security Feature BypassImportant4.6
CVE-2026-20945Microsoft Office SharePointMicrosoft SharePoint Server SpoofingImportant4.6
CVE-2026-26175Windows Boot ManagerWindows Boot Manager Security Feature BypassImportant4.6
CVE-2026-27906Windows HelloWindows Hello Security Feature BypassImportant4.4
CVE-2026-32220Windows Virtualization-Based Security (VBS) EnclaveUEFI Secure Boot Security Feature BypassImportant4.4
CVE-2026-32202Windows ShellWindows Shell SpoofingImportant4.3
CVE-2026-32216Windows Redirected Drive BufferingWindows Redirected Drive Buffering System Denial of ServiceModerate5.5
CVE-2026-33829Windows Snipping ToolWindows Snipping Tool SpoofingModerate4.3

Published later in the month (18)

Microsoft Edge updates, out-of-band fixes and cloud services. “Fixed by Microsoft” means a cloud service Microsoft has already patched: there is nothing to install.

DateCVEWhatSeverityAction
2 AprCVE-2026-32186Microsoft Bing Elevation of PrivilegeCriticalFixed by Microsoft
2 AprCVE-2026-32213Azure AI Foundry Elevation of PrivilegeCriticalFixed by Microsoft
2 AprCVE-2026-33105Microsoft Azure Kubernetes Service Elevation of PrivilegeCriticalFixed by Microsoft
2 AprCVE-2026-33107Azure Databricks Elevation of PrivilegeCriticalFixed by Microsoft
23 AprCVE-2026-33819Microsoft Bing Remote Code ExecutionCriticalFixed by Microsoft
23 AprCVE-2026-35431Microsoft Entra ID Entitlement Management SpoofingCriticalFixed by Microsoft
23 AprCVE-2026-21515Azure IoT Central Elevation of PrivilegeCriticalFixed by Microsoft
23 AprCVE-2026-24303Microsoft Partner Center Elevation of PrivilegeCriticalFixed by Microsoft
2 AprCVE-2026-26135Azure Custom Locations Resource Provider (RP) Elevation of PrivilegeCriticalFixed by Microsoft
23 AprCVE-2026-32210Microsoft Dynamics 365 (online) SpoofingCriticalFixed by Microsoft
23 AprCVE-2026-33102Microsoft 365 Copilot Elevation of PrivilegeCriticalFixed by Microsoft
2 AprCVE-2026-32211Azure MCP Server Information DisclosureCriticalFixed by Microsoft
23 AprCVE-2026-26150Microsoft Purview eDiscovery Elevation of PrivilegeCriticalFixed by Microsoft
2 AprCVE-2026-32173Azure SRE Agent Information DisclosureCriticalFixed by Microsoft
23 AprCVE-2026-32172Microsoft Power Apps Remote Code ExecutionCriticalFixed by Microsoft
21 AprCVE-2026-40372ASP.NET Core Elevation of PrivilegeImportantUpdate
10 AprCVE-2026-33119Microsoft Edge (Chromium-based) for Android SpoofingModerateUpdate
10 AprCVE-2026-33118Microsoft Edge (Chromium-based) SpoofingLowUpdate

From Microsoft’s Security Update Guide and CISA’s Known Exploited Vulnerabilities catalog, checked 2 days ago. Only vulnerabilities Microsoft itself issued are counted; Chromium fixes that Edge inherits are left out. For known problems with the updates themselves, see Windows release health.

← All tools