How to use it Start with "Patch these first" for the fixes attackers are already using. Then filter the list by product or keyword, or tick "Critical only" to narrow it down.
Next Patch Tuesday: Tue 13 Oct 2026 (in 3 days)
June 2026 Patch Tuesday: Microsoft fixed 201 vulnerabilities, 32 of them Critical. None was known to be exploited on the day. Released Tue 9 Jun 2026.
- 201vulnerabilities fixed
- 32Critical
- 0exploited before the fix
- 3publicly disclosed
- 0now on CISA KEV
By type: 66 elevation of privilege, 54 remote code execution, 27 spoofing, 26 information disclosure, 18 security feature bypass, 7 denial of service, 3 tampering.
Update problems? Ask in Patch Tuesday & Updates. From October 2026 a “what broke for you?” thread opens there at 1 pm Eastern every Patch Tuesday.
Patch these first
Being exploited, already public, or on CISA’s list of vulnerabilities attackers are using. Whatever else waits for testing, these should not.
| CVE | What | Severity | CVSS | Why first |
|---|---|---|---|---|
CVE-2026-45586 | Windows Collaborative Translation Framework (CTFMON) Elevation of Privilege | Important | 7.8 | Publicly disclosed |
CVE-2026-49160 | HTTP.sys Denial of Service | Important | 7.5 | Publicly disclosed |
CVE-2026-50507 | Windows BitLocker Security Feature Bypass | Important | 6.8 | Publicly disclosed |
Critical (32)
Microsoft’s top rating: usually code execution with little or no user action.
| CVE | What | Impact | CVSS |
|---|---|---|---|
CVE-2026-26142 | Nuance PowerScribe Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-44815 | DHCP Client Service Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-45657 | Windows Kernel Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-47291 | HTTP.sys Remote Code Execution | Remote Code Execution | 9.8 |
CVE-2026-32193 | Azure Kubernetes Service (AKS) Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-42985 | Remote Desktop Client Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-45648 | Windows Active Directory Domain Services Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-47289 | Remote Desktop Client Remote Code Execution | Remote Code Execution | 8.8 |
CVE-2026-44810 | Microsoft Cryptographic Services Elevation of Privilege | Elevation of Privilege | 8.4 |
CVE-2026-45456 | Microsoft Outlook and Word Remote Code Execution | Remote Code Execution | 8.4 |
CVE-2026-45458 | Microsoft Outlook and Word Remote Code Execution | Remote Code Execution | 8.4 |
CVE-2026-45461 | Microsoft Office Remote Code Execution | Remote Code Execution | 8.4 |
CVE-2026-45463 | Microsoft Office Remote Code Execution | Remote Code Execution | 8.4 |
CVE-2026-45472 | Microsoft Office Remote Code Execution | Remote Code Execution | 8.4 |
CVE-2026-45474 | Microsoft Office Remote Code Execution | Remote Code Execution | 8.4 |
CVE-2026-45607 | Windows Hyper-V Remote Code Execution | Remote Code Execution | 8.4 |
CVE-2026-45641 | Windows Hyper-V Remote Code Execution | Remote Code Execution | 8.4 |
CVE-2026-47635 | Microsoft Outlook and Word Remote Code Execution | Remote Code Execution | 8.4 |
CVE-2026-45476 | Microsoft Azure Network Adapter Elevation of Privilege | Elevation of Privilege | 8.2 |
CVE-2026-47652 | Windows Hyper-V Remote Code Execution | Remote Code Execution | 8.2 |
CVE-2026-42987 | Windows Deployment Services (WDS) Remote Code Execution | Remote Code Execution | 8.1 |
CVE-2026-33828 | Windows Device Health Attestation (DHA) Elevation of Privilege | Elevation of Privilege | 7.8 |
CVE-2026-44803 | Windows Graphics Component Remote Code Execution | Remote Code Execution | 7.8 |
CVE-2026-44812 | Windows Graphics Component Remote Code Execution | Remote Code Execution | 7.8 |
CVE-2026-48574 | Windows Media Remote Code Execution | Remote Code Execution | 7.8 |
CVE-2026-42992 | Remote Desktop Client Remote Code Execution | Remote Code Execution | 7.5 |
CVE-2026-44799 | Remote Desktop Client Remote Code Execution | Remote Code Execution | 7.5 |
CVE-2026-44801 | Remote Desktop Client Remote Code Execution | Remote Code Execution | 7.5 |
CVE-2026-47654 | Remote Desktop Client Remote Code Execution | Remote Code Execution | 7.5 |
CVE-2026-48563 | Remote Desktop Client Remote Code Execution | Remote Code Execution | 7.5 |
CVE-2026-47288 | Windows Kerberos Key Distribution Center (KDC) Remote Code Execution | Remote Code Execution | 7.1 |
CVE-2026-45460 | Microsoft Office Information Disclosure | Information Disclosure | 4.7 |
Added to CISA KEV in June 2026 (23)
Every vendor, not only Microsoft. CISA adds a vulnerability when it has evidence attackers are using it. US federal agencies must fix it by the deadline shown; for everyone else, it is the best free “patch this now” list there is.
| CVE | Vendor and product | What | Added | Federal deadline | Ransomware |
|---|---|---|---|---|---|
CVE-2026-48558 | SimpleHelp SimpleHelp | SimpleHelp Authentication Bypass | 29 Jun | 2 Jul 2026 | |
CVE-2026-12569 | PTC Windchill and FlexPLM | Improper Input Validation | 25 Jun | 28 Jun 2026 | Known |
CVE-2026-20230 | Cisco Unified Communications Manager | Server-Side Request Forgery (SSRF) | 25 Jun | 28 Jun 2026 | |
CVE-2025-67038 | Lantronix EDS5000 | Code Injection | 23 Jun | 26 Jun 2026 | |
CVE-2026-34908 | Ubiquiti UniFi OS | Improper Access Control | 23 Jun | 26 Jun 2026 | |
CVE-2026-34909 | Ubiquiti UniFi OS | Path Traversal | 23 Jun | 26 Jun 2026 | |
CVE-2026-34910 | Ubiquiti UniFi OS | Improper Input Validation | 23 Jun | 26 Jun 2026 | |
CVE-2026-20253 | Splunk Enterprise | Missing Authentication for Critical Function | 18 Jun | 21 Jun 2026 | |
CVE-2026-48907 | Widget Factory Joomla Content Editor | Widget Factory Joomla Content Editor Improper Access Control | 16 Jun | 19 Jun 2026 | |
CVE-2026-20262 | Cisco Catalyst SD-WAN Manager | Directory or Path Traversal | 15 Jun | 29 Jun 2026 | |
CVE-2026-54420 | LiteSpeed cPanel Plugin | UNIX Symbolic Link (Symlink) Following | 15 Jun | 18 Jun 2026 | |
CVE-2026-35273 | Oracle PeopleSoft Enterprise PeopleTools | Oracle PeopleSoft Enterprise PeopleTools Missing Authentication for Critical Function | 12 Jun | 15 Jun 2026 | Known |
CVE-2026-10520 | Ivanti Sentry | OS Command Injection | 11 Jun | 14 Jun 2026 | |
CVE-2026-11645 | Google Chromium V8 | Out-of-Bounds Read and Write | 9 Jun | 23 Jun 2026 | |
CVE-2026-20245 | Cisco Catalyst SD-WAN Manager | Improper Encoding or Escaping of Output | 9 Jun | 23 Jun 2026 | |
CVE-2026-7473 | Arista Extensible Operating System | Incomplete Comparison with Missing Factors | 9 Jun | 23 Jun 2026 | |
CVE-2026-42271 | BerriAI LiteLLM | Command Injection | 8 Jun | 22 Jun 2026 | |
CVE-2026-50751 | Check Point Security Gateway | Improper Authentication | 8 Jun | 11 Jun 2026 | Known |
CVE-2026-28318 | SolarWinds Serv-U | Uncontrolled Resource Consumption | 5 Jun | 19 Jun 2026 | |
CVE-2026-45247 | Mirasvit Mirasvit Full Page Cache Warmer | Mirasvit Full Page Cache Warmer Deserialization of Untrusted Data | 3 Jun | 6 Jun 2026 | |
CVE-2022-0492 | Linux Kernel | Improper Authentication | 2 Jun | 5 Jun 2026 | |
CVE-2025-48595 | Android Framework | Integer Overflow | 2 Jun | 5 Jun 2026 | |
CVE-2024-21182 | Oracle WebLogic Server | Unspecified | 1 Jun | 4 Jun 2026 |
All 201 fixes
Show the full list, with a filter
| CVE | Product | What | Severity | CVSS |
|---|---|---|---|---|
CVE-2026-26142 | Nuance PowerScribe | Nuance PowerScribe Remote Code Execution | Critical | 9.8 |
CVE-2026-44815 | Windows DHCP Client | DHCP Client Service Remote Code Execution | Critical | 9.8 |
CVE-2026-45657 | Windows Kernel | Windows Kernel Remote Code Execution | Critical | 9.8 |
CVE-2026-47291 | Windows HTTP.sys | HTTP.sys Remote Code Execution | Critical | 9.8 |
CVE-2026-32193 | Microsoft Azure Kubernetes Service | Azure Kubernetes Service (AKS) Remote Code Execution | Critical | 8.8 |
CVE-2026-42985 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Critical | 8.8 |
CVE-2026-45648 | Active Directory Domain Services | Windows Active Directory Domain Services Remote Code Execution | Critical | 8.8 |
CVE-2026-47289 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Critical | 8.8 |
CVE-2026-44810 | Windows Cryptographic Services | Microsoft Cryptographic Services Elevation of Privilege | Critical | 8.4 |
CVE-2026-45456 | Microsoft Office | Microsoft Outlook and Word Remote Code Execution | Critical | 8.4 |
CVE-2026-45458 | Microsoft Office | Microsoft Outlook and Word Remote Code Execution | Critical | 8.4 |
CVE-2026-45461 | Microsoft Office | Microsoft Office Remote Code Execution | Critical | 8.4 |
CVE-2026-45463 | Microsoft Office | Microsoft Office Remote Code Execution | Critical | 8.4 |
CVE-2026-45472 | Microsoft Office | Microsoft Office Remote Code Execution | Critical | 8.4 |
CVE-2026-45474 | Microsoft Office | Microsoft Office Remote Code Execution | Critical | 8.4 |
CVE-2026-45607 | Windows Hyper-V | Windows Hyper-V Remote Code Execution | Critical | 8.4 |
CVE-2026-45641 | Role: Windows Hyper-V | Windows Hyper-V Remote Code Execution | Critical | 8.4 |
CVE-2026-47635 | Microsoft Office | Microsoft Outlook and Word Remote Code Execution | Critical | 8.4 |
CVE-2026-45476 | Linux MANA Driver | Microsoft Azure Network Adapter Elevation of Privilege | Critical | 8.2 |
CVE-2026-47652 | Windows Hyper-V | Windows Hyper-V Remote Code Execution | Critical | 8.2 |
CVE-2026-42987 | Windows Deployment Services | Windows Deployment Services (WDS) Remote Code Execution | Critical | 8.1 |
CVE-2026-33828 | Microsoft Azure Attestation service and Device Health Attestation Service | Windows Device Health Attestation (DHA) Elevation of Privilege | Critical | 7.8 |
CVE-2026-44803 | Windows Win32K – GRFX | Windows Graphics Component Remote Code Execution | Critical | 7.8 |
CVE-2026-44812 | Windows Win32K – GRFX | Windows Graphics Component Remote Code Execution | Critical | 7.8 |
CVE-2026-48574 | Windows Media | Windows Media Remote Code Execution | Critical | 7.8 |
CVE-2026-42992 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Critical | 7.5 |
CVE-2026-44799 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Critical | 7.5 |
CVE-2026-44801 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Critical | 7.5 |
CVE-2026-47654 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Critical | 7.5 |
CVE-2026-48563 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Critical | 7.5 |
CVE-2026-47288 | Windows Kerberos | Windows Kerberos Key Distribution Center (KDC) Remote Code Execution | Critical | 7.1 |
CVE-2026-45460 | Microsoft Office | Microsoft Office Information Disclosure | Critical | 4.7 |
CVE-2026-47643 | Azure Stack Edge | Azure Stack Edge Remote Code Execution | Important | 9.8 |
CVE-2026-42904 | Windows TCP/IP | Windows TCP/IP Elevation of Privilege | Important | 9.6 |
CVE-2026-47281 | Visual Studio Code | Visual Studio Code Elevation of Privilege | Important | 9.6 |
CVE-2026-45602 | Windows DHCP Server | Windows Dynamic Host Configuration Protocol (DHCP) Tampering | Important | 9.1 |
CVE-2026-40371 | Microsoft Dynamics 365 (on-premises) | Microsoft Dynamics 365 (on-premises) Elevation of Privilege | Important | 8.8 |
CVE-2026-45484 | Microsoft Office SharePoint | Microsoft SharePoint Elevation of Privilege | Important | 8.8 |
CVE-2026-45504 | Microsoft Exchange Server | Microsoft Exchange Server Elevation of Privilege | Important | 8.8 |
CVE-2026-47653 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Important | 8.8 |
CVE-2026-41098 | Azure Stack Edge | Azure Stack Edge Spoofing | Important | 8.4 |
CVE-2026-45482 | GitHub Copilot and Visual Studio Code | Microsoft Visual Studio Code CoPilot Chat Security Feature Bypass | Important | 8.4 |
CVE-2026-44822 | Microsoft Office Excel | Microsoft Excel Information Disclosure | Important | 8.2 |
CVE-2026-42835 | Microsoft Teams for Android | Microsoft Teams for Android Information Disclosure | Important | 8.1 |
CVE-2026-42974 | Windows Performance Monitor | Windows Performance Monitor Remote Code Execution | Important | 8.1 |
CVE-2026-42981 | Windows Performance Monitor | Windows Performance Monitor Remote Code Execution | Important | 8.1 |
CVE-2026-45503 | Microsoft Exchange Server | Microsoft Exchange Server Information Disclosure | Important | 8.1 |
CVE-2026-45599 | Universal Plug and Play (upnp.dll) | Windows UPnP Device Host Remote Code Execution | Important | 8.1 |
CVE-2026-45635 | Universal Plug and Play (upnp.dll) | Windows UPnP Device Host Remote Code Execution | Important | 8.1 |
CVE-2026-47631 | Microsoft Exchange Server | Microsoft Exchange Server Spoofing | Important | 8.1 |
CVE-2026-45644 | Microsoft Live Share Canvas SDK | Microsoft Live Share Canvas SDK Elevation of Privilege | Important | 8.0 |
CVE-2026-47298 | Microsoft Office SharePoint | Microsoft SharePoint Server Remote Code Execution | Important | 8.0 |
CVE-2026-45588 | Windows Secure Boot | Secure Boot Security Feature Bypass | Important | 7.9 |
CVE-2026-45654 | Windows Secure Boot | Secure Boot Security Feature Bypass | Important | 7.9 |
CVE-2026-47656 | Windows Boot Manager | Windows Boot Manager Security Feature Bypass | Important | 7.9 |
CVE-2026-48568 | Windows Secure Boot | Secure Boot Security Feature Bypass | Important | 7.9 |
CVE-2026-48570 | Windows Secure Boot | Secure Boot Security Feature Bypass | Important | 7.9 |
CVE-2026-48573 | Windows Secure Boot | Secure Boot Security Feature Bypass | Important | 7.9 |
CVE-2026-48575 | Windows Secure Boot | Secure Boot Security Feature Bypass | Important | 7.9 |
CVE-2026-48576 | Windows Secure Boot | Secure Boot Security Feature Bypass | Important | 7.9 |
CVE-2026-48578 | Windows Secure Boot | Secure Boot Security Feature Bypass | Important | 7.9 |
CVE-2026-40404 | Windows Universal Disk Format File System Driver (UDFS) | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege | Important | 7.8 |
CVE-2026-40409 | Windows Universal Disk Format File System Driver (UDFS) | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege | Important | 7.8 |
CVE-2026-41092 | Microsoft Kinect | Microsoft Kinect Elevation of Privilege | Important | 7.8 |
CVE-2026-42828 | Windows Projected File System Filter Driver | Windows Projected File System Elevation of Privilege | Important | 7.8 |
CVE-2026-42829 | Windows Administrator Protection | Windows Administrator Protection Secure Feature Bypass | Important | 7.8 |
CVE-2026-42837 | Windows Projected File System Filter Driver | Windows Projected File System Elevation of Privilege | Important | 7.8 |
CVE-2026-42902 | Microsoft PowerToys | Microsoft PowerToys Elevation of Privilege | Important | 7.8 |
CVE-2026-42905 | Windows DWM Core Library | Windows DWM Core Library Elevation of Privilege | Important | 7.8 |
CVE-2026-42910 | Windows Hotpatch Monitoring Service | Windows Hotpatch Monitoring Service Elevation of Privilege | Important | 7.8 |
CVE-2026-42916 | Windows NT OS Kernel | NT OS Kernel Elevation of Privilege | Important | 7.8 |
CVE-2026-42977 | Windows Push Notifications | Windows Push Notifications Elevation of Privilege | Important | 7.8 |
CVE-2026-42978 | Windows Push Notifications | Windows Push Notifications Elevation of Privilege | Important | 7.8 |
CVE-2026-42979 | Windows Push Notifications | Windows Push Notifications Elevation of Privilege | Important | 7.8 |
CVE-2026-42980 | Windows NT OS Kernel | NT OS Kernel Elevation of Privilege | Important | 7.8 |
CVE-2026-42983 | Windows DWM Core Library | Windows DWM Core Library Elevation of Privilege | Important | 7.8 |
CVE-2026-42986 | Microsoft Graphics Component | Microsoft Graphics Component Elevation of Privilege | Important | 7.8 |
CVE-2026-42989 | Winlogon | Winlogon Elevation of Privilege | Important | 7.8 |
CVE-2026-42991 | Windows Push Notifications | Windows Push Notifications Elevation of Privilege | Important | 7.8 |
CVE-2026-44802 | Windows DWM Core Library | Windows DWM Core Library Elevation of Privilege | Important | 7.8 |
CVE-2026-44804 | Windows DWM Core Library | Windows DWM Core Library Elevation of Privilege | Important | 7.8 |
CVE-2026-44807 | Windows DWM Core Library | Windows DWM Core Library Elevation of Privilege | Important | 7.8 |
CVE-2026-44808 | Windows DWM Core Library | Windows DWM Core Library Elevation of Privilege | Important | 7.8 |
CVE-2026-44809 | Windows Common Log File System Driver | Windows Common Log File System Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-44811 | Windows DWM Core Library | Windows DWM Core Library Elevation of Privilege | Important | 7.8 |
CVE-2026-44813 | Windows DWM Core Library | Windows DWM Core Library Elevation of Privilege | Important | 7.8 |
CVE-2026-44817 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.8 |
CVE-2026-44819 | Microsoft Office | Microsoft Office Remote Code Execution | Important | 7.8 |
CVE-2026-44820 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.8 |
CVE-2026-44823 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.8 |
CVE-2026-44824 | Microsoft Office | Microsoft Office Remote Code Execution | Important | 7.8 |
CVE-2026-45457 | Microsoft Office Word | Microsoft Word Remote Code Execution | Important | 7.8 |
CVE-2026-45469 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.8 |
CVE-2026-45471 | Microsoft Office Word | Microsoft Word Remote Code Execution | Important | 7.8 |
CVE-2026-45475 | Microsoft Office | Microsoft Office Remote Code Execution | Important | 7.8 |
CVE-2026-45486 | Microsoft Office Word | Microsoft Word Remote Code Execution | Important | 7.8 |
CVE-2026-45487 | Windows Program Compatibility Assistant Service | Windows Program Compatibility Assistant Service Elevation of Privilege | Important | 7.8 |
CVE-2026-45490 | .NET | .NET SDK Elevation of Privilege | Important | 7.8 |
CVE-2026-45586 | Windows Collaborative Translation Framework | Windows Collaborative Translation Framework (CTFMON) Elevation of Privilege | Important | 7.8 |
CVE-2026-45592 | Windows Internet (wininet.dll) | Windows Internet (wininet.dll) Elevation of Privilege | Important | 7.8 |
CVE-2026-45593 | Windows SDK | Windows SDK Elevation of Privilege | Important | 7.8 |
CVE-2026-45600 | Windows Kernel-Mode Drivers | Windows Kernel-Mode Driver Elevation of Privilege | Important | 7.8 |
CVE-2026-45605 | Windows Bluetooth Service | Windows Bluetooth Service Elevation of Privilege | Important | 7.8 |
CVE-2026-45636 | Windows NTFS | Windows NTFS Remote Code Execution | Important | 7.8 |
CVE-2026-45637 | Windows DWM Core Library | Microsoft DWM Core Library Elevation of Privilege | Important | 7.8 |
CVE-2026-45638 | Windows Ancillary Function Driver for WinSock | Windows Ancillary Function Driver for WinSock Elevation of Privilege | Important | 7.8 |
CVE-2026-45643 | Microsoft Office Word | Microsoft Word Remote Code Execution | Important | 7.8 |
CVE-2026-45645 | Microsoft Office | Microsoft Office Remote Code Execution | Important | 7.8 |
CVE-2026-45656 | Windows UEFI | UEFI Secure Boot Security Feature Bypass | Important | 7.8 |
CVE-2026-45658 | Windows BitLocker | Windows BitLocker Security Feature Bypass | Important | 7.8 |
CVE-2026-47292 | Visual Studio Code | Visual Studio Code MSSQL Extension Remote Code Execution | Important | 7.8 |
CVE-2026-48565 | Windows Narrator Braille | Windows Narrator Braille Elevation of Privilege | Important | 7.8 |
CVE-2026-48583 | Windows Kernel | Windows Kernel Elevation of Privilege | Important | 7.8 |
CVE-2026-49161 | Window PC Manager | Microsoft PC Manager Security Feature Bypass | Important | 7.8 |
CVE-2026-50511 | Window PC Manager | Microsoft PC Manager Elevation of Privilege | Important | 7.8 |
CVE-2026-50512 | Window PC Manager | Microsoft PC Manager Elevation of Privilege | Important | 7.8 |
CVE-2026-40376 | Visual Studio Code | Visual Studio Code Elevation of Privilege | Important | 7.5 |
CVE-2026-42908 | Windows RDP | Windows Remote Desktop Protocol (RDP) Information Disclosure | Important | 7.5 |
CVE-2026-42909 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Important | 7.5 |
CVE-2026-42913 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Important | 7.5 |
CVE-2026-42993 | Remote Desktop Client | Remote Desktop Client Remote Code Execution | Important | 7.5 |
CVE-2026-45583 | Microsoft Exchange Server | Microsoft Exchange Server Remote Code Execution | Important | 7.5 |
CVE-2026-45591 | ASP.NET Core | ASP.NET Core Denial of Service | Important | 7.5 |
CVE-2026-45639 | Windows RDP | Windows Remote Desktop Protocol (RDP) Information Disclosure | Important | 7.5 |
CVE-2026-49160 | HTTP/2 | HTTP.sys Denial of Service | Important | 7.5 |
CVE-2026-45481 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 7.3 |
CVE-2026-47634 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 7.3 |
CVE-2026-45649 | Office for Android | Office for Android Spoofing | Important | 7.1 |
CVE-2026-48569 | Visual Studio Code | Visual Studio Code Security Feature Bypass | Important | 7.1 |
CVE-2026-34335 | Windows Ancillary Function Driver for WinSock | Windows Ancillary Function Driver for WinSock Elevation of Privilege | Important | 7.0 |
CVE-2026-41108 | Windows DNS | Windows DNS Client Elevation of Privilege | Important | 7.0 |
CVE-2026-42836 | Function Discovery Service (fdwsd.dll) | Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege | Important | 7.0 |
CVE-2026-42911 | Windows Ancillary Function Driver for WinSock | Windows Ancillary Function Driver for WinSock Elevation of Privilege | Important | 7.0 |
CVE-2026-42912 | Windows Telephony Service | Windows Telephony Service Elevation of Privilege | Important | 7.0 |
CVE-2026-42984 | Windows Kernel | Windows Kernel Elevation of Privilege | Important | 7.0 |
CVE-2026-44818 | Microsoft Office Excel | Microsoft Excel Remote Code Execution | Important | 7.0 |
CVE-2026-45596 | Windows Ancillary Function Driver for WinSock | Windows Ancillary Function Driver for WinSock Elevation of Privilege | Important | 7.0 |
CVE-2026-45597 | UI Automation Manager (uiamanager.dll) | Windows UI Automation Manager (uiamanager.dll) Elevation of Privilege | Important | 7.0 |
CVE-2026-45598 | Windows Ancillary Function Driver for WinSock | Windows Ancillary Function Driver for WinSock Elevation of Privilege | Important | 7.0 |
CVE-2026-45601 | Windows Ancillary Function Driver for WinSock | Windows Ancillary Function Driver for WinSock Elevation of Privilege | Important | 7.0 |
CVE-2026-45603 | Windows Ancillary Function Driver for WinSock | Windows Ancillary Function Driver for WinSock Elevation of Privilege | Important | 7.0 |
CVE-2026-45640 | Windows Bluetooth Port Driver | Windows Bluetooth Port Driver Elevation of Privilege | Important | 7.0 |
CVE-2026-45653 | Windows Kernel | Windows Kernel Elevation of Privilege | Important | 7.0 |
CVE-2026-47293 | Microsoft Office Click-To-Run | Microsoft Office Click-To-Run Elevation of Privilege | Important | 7.0 |
CVE-2026-47648 | Windows Storage | Windows Storage Elevation of Privilege | Important | 7.0 |
CVE-2026-45608 | Windows DHCP Client | Windows DHCP Client Information Disclosure | Important | 6.8 |
CVE-2026-50507 | Windows BitLocker | Windows BitLocker Security Feature Bypass | Important | 6.8 |
CVE-2026-42903 | Windows Kerberos | Windows Kerberos Denial of Service | Important | 6.5 |
CVE-2026-42907 | Windows Shell | Windows Shell Information Disclosure | Important | 6.5 |
CVE-2026-45454 | Microsoft Office SharePoint | Microsoft SharePoint Remote Code Execution | Important | 6.5 |
CVE-2026-45501 | Microsoft Exchange Server | Microsoft Exchange Server Spoofing | Important | 6.5 |
CVE-2026-47284 | Visual Studio Code | Visual Studio Code Information Disclosure | Important | 6.5 |
CVE-2026-47287 | Visual Studio Code | Visual Studio Code Tampering | Important | 6.5 |
CVE-2026-50508 | Windows NTLM | Windows NTLM Spoofing | Important | 6.5 |
CVE-2026-50519 | GitHub Copilot and Visual Studio Code | Microsoft Visual Studio Code CoPilot Chat Security Feature Bypass | Important | 6.5 |
CVE-2026-45491 | .NET | .NET Tampering | Important | 6.2 |
CVE-2026-45500 | Microsoft Exchange Server | Microsoft Exchange Server Spoofing | Important | 6.1 |
CVE-2026-42906 | Windows Shell | Windows Shell Information Disclosure | Important | 5.5 |
CVE-2026-42915 | Windows VMSwitch | Microsoft Windows VMSwitch Denial of Service | Important | 5.5 |
CVE-2026-42968 | Windows Telephony Service | Windows Telephony Server Information Disclosure | Important | 5.5 |
CVE-2026-42969 | Windows Push Notifications | Windows Push Notification Information Disclosure | Important | 5.5 |
CVE-2026-42970 | Windows Push Notifications | Windows Push Notification Information Disclosure | Important | 5.5 |
CVE-2026-42971 | Windows Push Notifications | Windows Push Notification Information Disclosure | Important | 5.5 |
CVE-2026-42972 | Role: Windows Hyper-V | Windows Hyper-V Information Disclosure | Important | 5.5 |
CVE-2026-42973 | Windows Push Notifications | Windows Push Notification Information Disclosure | Important | 5.5 |
CVE-2026-44805 | Windows Network Controller (NC) Host Agent | Windows Network Controller (NC) Host Agent Denial of Service | Important | 5.5 |
CVE-2026-44814 | Windows DWM Core Library | Windows DWM Core Library Information Disclosure | Important | 5.5 |
CVE-2026-44821 | Microsoft Office | Microsoft Office Information Disclosure | Important | 5.5 |
CVE-2026-45594 | Windows Application Identity (AppID) Subsystem | Windows Application Identity (AppID) Information Disclosure | Important | 5.5 |
CVE-2026-45604 | Windows Application Identity (AppID) Subsystem | Windows Managed Installer Information Disclosure | Important | 5.5 |
CVE-2026-45606 | Microsoft UxTheme Library (uxtheme.dll) | Microsoft UxTheme Library (uxtheme.dll) Denial of Service | Important | 5.5 |
CVE-2026-45634 | Windows DHCP Server | Windows DHCP Client Information Disclosure | Important | 5.5 |
CVE-2026-45647 | Microsoft Defender for Endpoint | Microsoft Defender for Endpoint for Mac Elevation of Privilege | Important | 5.5 |
CVE-2026-48566 | Windows DWM Core Library | Windows DWM Core Library Information Disclosure | Important | 5.5 |
CVE-2026-33113 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 5.4 |
CVE-2026-45453 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 5.4 |
CVE-2026-45464 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 5.4 |
CVE-2026-45465 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 5.4 |
CVE-2026-45595 | Windows Mark of the Web (MOTW) | Windows Mark of the Web Security Feature Bypass | Important | 5.4 |
CVE-2026-47636 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 5.4 |
CVE-2026-47639 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 5.4 |
CVE-2026-48560 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 5.4 |
CVE-2026-42914 | Windows Kerberos | Windows Kerberos Denial of Service | Important | 5.3 |
CVE-2026-45655 | Windows BitLocker | Windows BitLocker Security Feature Bypass | Important | 5.3 |
CVE-2026-45502 | Microsoft Exchange Server | Microsoft Exchange Server Information Disclosure | Important | 5.0 |
CVE-2026-45462 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 4.6 |
CVE-2026-45467 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 4.6 |
CVE-2026-45468 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 4.6 |
CVE-2026-45479 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 4.6 |
CVE-2026-45483 | Microsoft Office Project | Microsoft Office Project Server Spoofing | Important | 4.6 |
CVE-2026-47637 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 4.6 |
CVE-2026-47638 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 4.6 |
CVE-2026-47640 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 4.6 |
CVE-2026-47641 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 4.6 |
CVE-2026-48562 | Microsoft Office SharePoint | Microsoft SharePoint Server Spoofing | Important | 4.6 |
CVE-2026-45650 | Microsoft Bing | Microsoft Bing Search Spoofing | Important | 4.3 |
CVE-2026-45642 | Microsoft Azure Attestation service and Device Health Attestation Service | Microsoft Azure Attestation service and Device Health Attestation Service Spoofing | Important | 3.9 |
CVE-2026-45455 | Microsoft Office Excel | Microsoft Excel Information Disclosure | Important | 3.3 |
CVE-2026-45459 | Microsoft Office Excel | Microsoft Excel Security Feature Bypass | Important | 3.3 |
CVE-2026-45466 | Microsoft Office Word | Microsoft Word Information Disclosure | Important | 3.3 |
CVE-2026-45485 | Microsoft Office | Microsoft Office Information Disclosure | Important | 3.3 |
Published later in the month (19)
Microsoft Edge updates, out-of-band fixes and cloud services. “Fixed by Microsoft” means a cloud service Microsoft has already patched: there is nothing to install.
| Date | CVE | What | Severity | Action |
|---|---|---|---|---|
| 18 Jun | CVE-2026-45480 | Azure Active Directory Elevation of Privilege | Critical | Fixed by Microsoft |
| 4 Jun | CVE-2026-48567 | Azure HorizonDB Elevation of Privilege | Critical | Fixed by Microsoft |
| 18 Jun | CVE-2026-47647 | Dynamics 365 Elevation of Privilege | Critical | Fixed by Microsoft |
| 18 Jun | CVE-2026-48584 | Microsoft Azure Synapse Elevation of Privilege | Critical | Fixed by Microsoft |
| 18 Jun | CVE-2026-54130 | M365 Copilot Information Disclosure | Critical | Fixed by Microsoft |
| 18 Jun | CVE-2026-48582 | Microsoft Exchange Online Elevation of Privilege | Critical | Fixed by Microsoft |
| 18 Jun | CVE-2026-47646 | Dynamics 365 Customer Voice Spoofing | Critical | Fixed by Microsoft |
| 4 Jun | CVE-2026-48579 | Microsoft Exchange Online Information Disclosure | Critical | Fixed by Microsoft |
| 18 Jun | CVE-2026-32208 | Microsoft Entra ID Spoofing | Critical | Fixed by Microsoft |
| 18 Jun | CVE-2026-47645 | Microsoft 365 Copilot's Business Chat Elevation of Privilege | Critical | Fixed by Microsoft |
| 18 Jun | CVE-2026-32174 | Azure Bot Service Elevation of Privilege | Critical | Fixed by Microsoft |
| 4 Jun | CVE-2026-45497 | Microsoft M365 Copilot Remote Code Execution | Critical | Fixed by Microsoft |
| 18 Jun | CVE-2026-47633 | Microsoft Cost Management Information Disclosure | Critical | Fixed by Microsoft |
| 4 Jun | CVE-2026-42824 | M365 Copilot Information Disclosure | Critical | Fixed by Microsoft |
| 18 Jun | CVE-2026-42895 | Microsoft Copilot Tampering | Critical | Fixed by Microsoft |
| 4 Jun | CVE-2026-47644 | Copilot Chat (Microsoft Edge) Information Disclosure | Critical | Fixed by Microsoft |
| 4 Jun | CVE-2026-47655 | Microsoft Graph Information Disclosure | Critical | Fixed by Microsoft |
| 26 Jun | CVE-2026-50521 | Microsoft Edge (Chromium-based) Remote Code Execution | Important | Update |
| 16 Jun | CVE-2026-50656 | Microsoft Defender Elevation of Privilege | Important | Update |
From Microsoft’s Security Update Guide and CISA’s Known Exploited Vulnerabilities catalog, checked 2 weeks ago. Only vulnerabilities Microsoft itself issued are counted; Chromium fixes that Edge inherits are left out. For known problems with the updates themselves, see Windows release health.