Claude is having a major outage. Status board · Discuss Claude

Patch Tuesday: August 2026

Each month's Microsoft security updates: what to patch first, the Critical fixes, and what CISA says attackers are exploiting.

How to use it Start with "Patch these first" for the fixes attackers are already using. Then filter the list by product or keyword, or tick "Critical only" to narrow it down.

Next Patch Tuesday: Tue 13 Oct 2026 (in 3 days)

August 2026 Patch Tuesday: Microsoft fixed 402 vulnerabilities, 44 of them Critical. 1 was already being exploited. Released Tue 11 Aug 2026.

  • 402vulnerabilities fixed
  • 44Critical
  • 1exploited before the fix
  • 2publicly disclosed
  • 2now on CISA KEV

By type: 163 elevation of privilege, 112 remote code execution, 85 information disclosure, 16 spoofing, 11 security feature bypass, 11 denial of service, 4 tampering.

Update problems? Ask in Patch Tuesday & Updates. From October 2026 a “what broke for you?” thread opens there at 1 pm Eastern every Patch Tuesday.

Patch these first

Being exploited, already public, or on CISA’s list of vulnerabilities attackers are using. Whatever else waits for testing, these should not.

CVEWhatSeverityCVSSWhy first
CVE-2026-65660Microsoft SharePoint Server Remote Code ExecutionImportant8.8On CISA KEV federal deadline 28 Sep
CVE-2026-62832Windows User Profile Service Elevation of PrivilegeImportant7.8Publicly disclosed
CVE-2026-68820Windows Ancillary Function Driver for WinSock Elevation of PrivilegeImportant7.0Exploited On CISA KEV federal deadline 25 Aug
CVE-2026-72971Windows Container Isolation FS Filter Driver (unionfs.sys) TamperingImportant5.5Publicly disclosed

Critical (44)

Microsoft’s top rating: usually code execution with little or no user action.

CVEWhatImpactCVSS
CVE-2026-62815Microsoft QUIC Remote Code ExecutionRemote Code Execution9.8
CVE-2026-62878Windows DNS Server Remote Code ExecutionRemote Code Execution9.8
CVE-2026-62893Windows Deployment Services TFTP Server Remote Code ExecutionRemote Code Execution9.8
CVE-2026-65791Windows iSCSI Target Service Remote Code ExecutionRemote Code Execution9.8
CVE-2026-62816Windows Reliable Multicast Transport Driver (RMCAST) Remote Code ExecutionRemote Code Execution8.8
CVE-2026-62817Windows DNS Server Remote Code ExecutionRemote Code Execution8.8
CVE-2026-62818Windows Active Directory Certificate Services (AD CS) Remote Code ExecutionRemote Code Execution8.8
CVE-2026-62822Windows GDI+ Remote Code ExecutionRemote Code Execution8.8
CVE-2026-62823Windows DHCP Server Remote Code ExecutionRemote Code Execution8.8
CVE-2026-62824Remote Desktop Client Remote Code ExecutionRemote Code Execution8.8
CVE-2026-62827Microsoft SharePoint Server Elevation of PrivilegeElevation of Privilege8.8
CVE-2026-64921Microsoft SharePoint Server Elevation of PrivilegeElevation of Privilege8.8
CVE-2026-65665Microsoft SharePoint Server Remote Code ExecutionRemote Code Execution8.8
CVE-2026-70130Microsoft Office Remote Code ExecutionRemote Code Execution8.4
CVE-2026-62819Windows Routing and Remote Access Service (RRAS) Remote Code ExecutionRemote Code Execution8.1
CVE-2026-62820Windows DNS Server Remote Code ExecutionRemote Code Execution8.1
CVE-2026-62889Windows Secure Socket Tunneling Protocol (SSTP) Remote Code ExecutionRemote Code Execution8.1
CVE-2026-65679Windows iSCSI Target Service Remote Code ExecutionRemote Code Execution8.1
CVE-2026-65789Windows DNS Server Remote Code ExecutionRemote Code Execution8.1
CVE-2026-65796Windows iSCSI Target Service Remote Code ExecutionRemote Code Execution8.1
CVE-2026-66802Windows Device Health Attestation (DHA) Remote Code ExecutionRemote Code Execution8.1
CVE-2026-71331Windows Device Health Attestation (DHA) Remote Code ExecutionRemote Code Execution8.1
CVE-2026-62911Microsoft Exchange Server Elevation of PrivilegeElevation of Privilege8.0
CVE-2026-62890Windows GDI+ Elevation of PrivilegeRemote Code Execution7.8
CVE-2026-63513Microsoft Office Graphics Component Remote Code ExecutionRemote Code Execution7.8
CVE-2026-63515Microsoft Office Remote Code ExecutionRemote Code Execution7.8
CVE-2026-63518Microsoft Office Word Remote Code ExecutionRemote Code Execution7.8
CVE-2026-63519Microsoft Office Graphics Component Remote Code ExecutionRemote Code Execution7.8
CVE-2026-63525Microsoft Office Word Remote Code ExecutionRemote Code Execution7.8
CVE-2026-63526Microsoft Office Graphics Component Remote Code ExecutionRemote Code Execution7.8
CVE-2026-63532Microsoft Office Remote Code ExecutionRemote Code Execution7.8
CVE-2026-64898Microsoft Office Remote Code ExecutionRemote Code Execution7.8
CVE-2026-64903Microsoft Office Remote Code ExecutionRemote Code Execution7.8
CVE-2026-64907Microsoft Office Word Remote Code ExecutionRemote Code Execution7.8
CVE-2026-64909Microsoft Office Remote Code ExecutionRemote Code Execution7.8
CVE-2026-64910Microsoft Office Remote Code ExecutionRemote Code Execution7.8
CVE-2026-64911Microsoft Office Remote Code ExecutionRemote Code Execution7.8
CVE-2026-65657Microsoft Office Remote Code ExecutionRemote Code Execution7.8
CVE-2026-65664Microsoft Office Graphics Component Remote Code ExecutionRemote Code Execution7.8
CVE-2026-66799Windows Key Guard Elevation of PrivilegeElevation of Privilege7.8
CVE-2026-66807Microsoft Office Graphics Component Remote Code ExecutionRemote Code Execution7.8
CVE-2026-68794Microsoft Excel Remote Code ExecutionRemote Code Execution7.8
CVE-2026-68804Microsoft Excel Remote Code ExecutionRemote Code Execution7.8
CVE-2026-68816Microsoft Excel Remote Code ExecutionRemote Code Execution7.8

Added to CISA KEV in August 2026 (31)

Every vendor, not only Microsoft. CISA adds a vulnerability when it has evidence attackers are using it. US federal agencies must fix it by the deadline shown; for everyone else, it is the best free “patch this now” list there is.

CVEVendor and productWhatAddedFederal deadlineRansomware
CVE-2026-81578PaperCut NG/MFMissing Authentication for Critical Function31 Aug14 Sep 2026
CVE-2026-82078PaperCut NG/MFUnsafe Reflection31 Aug14 Sep 2026
CVE-2023-49105ownCloud ownCloudownCloud Improper Authentication27 Aug30 Aug 2026
CVE-2026-53362Linux KernelUnspecified27 Aug30 Aug 2026
CVE-2026-66384JFrog ArtifactoryImproper Limitation of a Pathname to a Restricted Directory27 Aug10 Sep 2026
CVE-2015-3246Red Hat LibuserRace Condition26 Aug9 Sep 2026
CVE-2015-5287Red Hat Automatic Bug Reporting ToolPrivilege Escalation26 Aug9 Sep 2026
CVE-2019-1068Microsoft SQL ServerRemote Code Execution26 Aug29 Aug 2026
CVE-2021-23758Ajax.NET Professional Ajax.NET ProfessionalAjax.NET Professional Deserialization of Untrusted Data26 Aug9 Sep 2026
CVE-2022-0995Linux KernelOut-of-Bounds Write26 Aug29 Aug 2026
CVE-2026-8452Citrix NetScaler ADC and NetScaler GatewayImproper Restriction of Operations within the Bounds of a Memory Buffer26 Aug29 Aug 2026
CVE-2026-60004Gitea GiteaGitea Code Injection25 Aug28 Aug 2026
CVE-2026-21962Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-inImproper Access Control24 Aug27 Aug 2026
CVE-2026-73570Synacor Zimbra Collaboration Suite (ZCS)Zimbra Collaboration Suite (ZCS) OS Command Injection21 Aug24 Aug 2026
CVE-2026-72529TrueConf ServerMissing Authentication for Critical Function20 Aug23 Aug 2026
CVE-2026-72530TrueConf ServerCode Injection20 Aug3 Sep 2026
CVE-2026-64849MLflow MLflowMLflow Server-Side Request Forgery19 Aug2 Sep 2026
CVE-2026-33824Microsoft Internet Key Exchange (IKE) Service ExtensionsDouble Free18 Aug21 Aug 2026
CVE-2026-55040Microsoft SharePointWeak Authentication18 Aug21 Aug 2026
CVE-2026-59310Broadcom VMware vCenterPath Traversal18 Aug21 Aug 2026Known
CVE-2026-65400Apple macOSImproper Authentication18 Aug21 Aug 2026
CVE-2025-62593Ray-Project RayCode Injection17 Aug20 Aug 2026
CVE-2026-20349Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Heap Inspection11 Aug14 Aug 2026
CVE-2026-68820Microsoft Windows Ancillary Function Driver for WinSock Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free11 Aug25 Aug 2026
CVE-2026-72898Metabase MetabaseMetabase SQL Injection11 Aug14 Aug 2026
CVE-2026-8037Progress LoadMasterCommand Injection7 Aug10 Aug 2026
CVE-2026-63077JetBrains TeamCityDeserialization of Untrusted Data5 Aug8 Aug 2026Known
CVE-2026-18556N-able N-centralAuthentication Bypass Using an Alternate Path or Channel4 Aug7 Aug 2026
CVE-2026-34486Apache TomcatMissing Encryption of Sensitive Data4 Aug7 Aug 2026
CVE-2026-9198IBM LangflowCode Injection4 Aug7 Aug 2026
CVE-2026-18577N-able N-centralAuthentication Bypass Using an Alternate Path or Channel3 Aug6 Aug 2026

All 402 fixes

Show the full list, with a filter
CVEProductWhatSeverityCVSS
CVE-2026-62815Microsoft QUICMicrosoft QUIC Remote Code ExecutionCritical9.8
CVE-2026-62878Windows DNSWindows DNS Server Remote Code ExecutionCritical9.8
CVE-2026-62893Windows Deployment ServicesWindows Deployment Services TFTP Server Remote Code ExecutionCritical9.8
CVE-2026-65791Windows iSCSI Target ServiceWindows iSCSI Target Service Remote Code ExecutionCritical9.8
CVE-2026-62816Reliable Multicast Transport Driver (RMCAST)Windows Reliable Multicast Transport Driver (RMCAST) Remote Code ExecutionCritical8.8
CVE-2026-62817Windows DNSWindows DNS Server Remote Code ExecutionCritical8.8
CVE-2026-62818Active Directory Certificate Services (AD CS)Windows Active Directory Certificate Services (AD CS) Remote Code ExecutionCritical8.8
CVE-2026-62822Windows GDI+Windows GDI+ Remote Code ExecutionCritical8.8
CVE-2026-62823Windows DHCP ServerWindows DHCP Server Remote Code ExecutionCritical8.8
CVE-2026-62824Remote Desktop ClientRemote Desktop Client Remote Code ExecutionCritical8.8
CVE-2026-62827Microsoft Office SharePointMicrosoft SharePoint Server Elevation of PrivilegeCritical8.8
CVE-2026-64921Microsoft Office SharePointMicrosoft SharePoint Server Elevation of PrivilegeCritical8.8
CVE-2026-65665Microsoft Office SharePointMicrosoft SharePoint Server Remote Code ExecutionCritical8.8
CVE-2026-70130Microsoft OfficeMicrosoft Office Remote Code ExecutionCritical8.4
CVE-2026-62819Windows Routing and Remote Access Service (RRAS)Windows Routing and Remote Access Service (RRAS) Remote Code ExecutionCritical8.1
CVE-2026-62820Windows DNSWindows DNS Server Remote Code ExecutionCritical8.1
CVE-2026-62889Windows Secure Socket Tunneling Protocol (SSTP)Windows Secure Socket Tunneling Protocol (SSTP) Remote Code ExecutionCritical8.1
CVE-2026-65679Windows iSCSI Target ServiceWindows iSCSI Target Service Remote Code ExecutionCritical8.1
CVE-2026-65789Windows DNSWindows DNS Server Remote Code ExecutionCritical8.1
CVE-2026-65796Windows iSCSI Target ServiceWindows iSCSI Target Service Remote Code ExecutionCritical8.1
CVE-2026-66802Windows Device Health Attestation (DHA)Windows Device Health Attestation (DHA) Remote Code ExecutionCritical8.1
CVE-2026-71331Windows Device Health Attestation (DHA)Windows Device Health Attestation (DHA) Remote Code ExecutionCritical8.1
CVE-2026-62911Microsoft Exchange ServerMicrosoft Exchange Server Elevation of PrivilegeCritical8.0
CVE-2026-62890Windows GDI+Windows GDI+ Elevation of PrivilegeCritical7.8
CVE-2026-63513Microsoft OfficeMicrosoft Office Graphics Component Remote Code ExecutionCritical7.8
CVE-2026-63515Microsoft OfficeMicrosoft Office Remote Code ExecutionCritical7.8
CVE-2026-63518Microsoft Office WordMicrosoft Office Word Remote Code ExecutionCritical7.8
CVE-2026-63519Microsoft OfficeMicrosoft Office Graphics Component Remote Code ExecutionCritical7.8
CVE-2026-63525Microsoft Office WordMicrosoft Office Word Remote Code ExecutionCritical7.8
CVE-2026-63526Microsoft OfficeMicrosoft Office Graphics Component Remote Code ExecutionCritical7.8
CVE-2026-63532Microsoft OfficeMicrosoft Office Remote Code ExecutionCritical7.8
CVE-2026-64898Microsoft OfficeMicrosoft Office Remote Code ExecutionCritical7.8
CVE-2026-64903Microsoft OfficeMicrosoft Office Remote Code ExecutionCritical7.8
CVE-2026-64907Microsoft Office WordMicrosoft Office Word Remote Code ExecutionCritical7.8
CVE-2026-64909Microsoft OfficeMicrosoft Office Remote Code ExecutionCritical7.8
CVE-2026-64910Microsoft OfficeMicrosoft Office Remote Code ExecutionCritical7.8
CVE-2026-64911Microsoft OfficeMicrosoft Office Remote Code ExecutionCritical7.8
CVE-2026-65657Microsoft OfficeMicrosoft Office Remote Code ExecutionCritical7.8
CVE-2026-65664Microsoft OfficeMicrosoft Office Graphics Component Remote Code ExecutionCritical7.8
CVE-2026-66799Windows Key GuardWindows Key Guard Elevation of PrivilegeCritical7.8
CVE-2026-66807Microsoft OfficeMicrosoft Office Graphics Component Remote Code ExecutionCritical7.8
CVE-2026-68794Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionCritical7.8
CVE-2026-68804Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionCritical7.8
CVE-2026-68816Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionCritical7.8
CVE-2026-59124Microsoft High Performance Computing (HPC) PackMicrosoft High Performance Computing (HPC) Pack Remote Code ExecutionImportant9.8
CVE-2026-70306Microsoft Office SharePointMicrosoft Office SharePoint SpoofingImportant9.3
CVE-2026-49179Windows Active DirectoryWindows Active Directory Domain Services Remote Code ExecutionImportant8.8
CVE-2026-57104Azure Storage ExplorerAzure Storage Explorer Elevation of PrivilegeImportant8.8
CVE-2026-59113Visual Studio CodeVisual Studio Code Remote Code ExecutionImportant8.8
CVE-2026-59133Microsoft High Performance Computing (HPC) PackMicrosoft High Performance Computing (HPC) Pack Elevation of PrivilegeImportant8.8
CVE-2026-62784Microsoft Local Security Authority Server (lsasrv)Microsoft Local Security Authority Server (lsasrv) Remote Code ExecutionImportant8.8
CVE-2026-62785Windows LDAP – Lightweight Directory Access ProtocolWindows LDAP – Lightweight Directory Access Protocol Remote Code ExecutionImportant8.8
CVE-2026-62790Windows SMB ServerWindows SMBv3 Server Remote Code ExecutionImportant8.8
CVE-2026-62795Windows LDAP – Lightweight Directory Access ProtocolWindows LDAP – Lightweight Directory Access Protocol Remote Code ExecutionImportant8.8
CVE-2026-62800Windows SMB ServerWindows SMBv3 Server Remote Code ExecutionImportant8.8
CVE-2026-62872.NET Framework.NET Framework Elevation of PrivilegeImportant8.8
CVE-2026-62913Microsoft Exchange ServerMicrosoft Exchange Server Remote Code ExecutionImportant8.8
CVE-2026-63514Microsoft Office SharePointMicrosoft SharePoint Server Remote Code ExecutionImportant8.8
CVE-2026-64901Microsoft Office SharePointMicrosoft SharePoint Server Remote Code ExecutionImportant8.8
CVE-2026-65658Microsoft Office SharePointMicrosoft SharePoint Server Remote Code ExecutionImportant8.8
CVE-2026-65660Microsoft Office SharePointMicrosoft SharePoint Server Remote Code ExecutionImportant8.8
CVE-2026-65663Microsoft Office SharePointMicrosoft SharePoint Server Remote Code ExecutionImportant8.8
CVE-2026-65767Microsoft Teams for AndroidMicrosoft Teams for Android SpoofingImportant8.8
CVE-2026-65768Microsoft Teams for AndroidMicrosoft Teams Remote Code ExecutionImportant8.8
CVE-2026-65807Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant8.8
CVE-2026-65811Power BIPower BI Remote Code ExecutionImportant8.8
CVE-2026-65815Microsoft Dynamics 365 (on-premises)Microsoft Dynamics 365 On-Premises Remote Code ExecutionImportant8.8
CVE-2026-66805Microsoft Office SharePointMicrosoft SharePoint Server Remote Code ExecutionImportant8.8
CVE-2026-66808Microsoft Office SharePointMicrosoft SharePoint Server Remote Code ExecutionImportant8.8
CVE-2026-69320Visual Studio CodeVisual Studio Code Remote Code ExecutionImportant8.8
CVE-2026-70321Microsoft Office SharePointMicrosoft SharePoint Remote Code ExecutionImportant8.8
CVE-2026-70324Microsoft Office SharePointMicrosoft SharePoint Elevation of PrivilegeImportant8.8
CVE-2026-70326Microsoft Office SharePointMicrosoft SharePoint Server Elevation of PrivilegeImportant8.8
CVE-2026-70329Microsoft Office OutlookMicrosoft Outlook Remote Code ExecutionImportant8.8
CVE-2026-70336Visual Studio CodeVisual Studio Code Remote Code ExecutionImportant8.8
CVE-2026-70337Microsoft PowerShell CoreMicrosoft PowerShell Remote Code ExecutionImportant8.8
CVE-2026-69306Visual Studio CodeVisual Studio Code Security Feature BypassImportant8.2
CVE-2026-62778Windows DNSWindows DNS Elevation of PrivilegeImportant8.1
CVE-2026-62781RPC RuntimeRPC Runtime Library Remote Code ExecutionImportant8.1
CVE-2026-62792Windows TCP/IPWindows TCP/IP Remote Code ExecutionImportant8.1
CVE-2026-63520Microsoft Office SharePointMicrosoft SharePoint Server Remote Code ExecutionImportant8.1
CVE-2026-70340Azure CycleCloudAzure CycleCloud Elevation of PrivilegeImportant8.1
CVE-2026-57105Microsoft Office SharePointMicrosoft Office SharePoint SpoofingImportant8.0
CVE-2026-42976Windows RPC APIRemote Access Management service/API (RPC server) Elevation of PrivilegeImportant7.8
CVE-2026-50523Microsoft PowerShellMicrosoft PowerShell Remote Code ExecutionImportant7.8
CVE-2026-54981Visual Studio Code – Python extensionVisual Studio Code Python Extension Security Feature BypassImportant7.8
CVE-2026-54984Windows Imaging ComponentWindows Imaging Component Remote Code ExecutionImportant7.8
CVE-2026-56174Windows Narrator BrailleWindows Narrator Braille Elevation of PrivilegeImportant7.8
CVE-2026-58641.NET.NET Elevation of PrivilegeImportant7.8
CVE-2026-58650Visual Studio CodeVisual Studio Code Security Feature BypassImportant7.8
CVE-2026-58651Microsoft Office WordMicrosoft Word Remote Code ExecutionImportant7.8
CVE-2026-59127Windows InstallerWindows Installer Elevation of PrivilegeImportant7.8
CVE-2026-61349Windows Work Folder ServiceWindows Work Folder Service Elevation of PrivilegeImportant7.8
CVE-2026-61353Windows Telephony ServiceWindows Telephony Service Elevation of PrivilegeImportant7.8
CVE-2026-61355Windows Sensor Data ServiceWindows Sensor Data Service Elevation of PrivilegeImportant7.8
CVE-2026-61356Windows Remote Desktop ServicesWindows Remote Desktop Services Elevation of PrivilegeImportant7.8
CVE-2026-61357Application Information ServicesApplication Information Services Elevation of PrivilegeImportant7.8
CVE-2026-61358Windows Accessibility Infrastructure (ATBroker.exe)Windows Accessibility Infrastructure (ATBroker.exe) Elevation of PrivilegeImportant7.8
CVE-2026-61359Windows StorageWindows Storage Elevation of PrivilegeImportant7.8
CVE-2026-61364Windows Remote Desktop ServicesWindows Remote Desktop Services Elevation of PrivilegeImportant7.8
CVE-2026-61365Windows Remote Desktop ServicesWindows Remote Desktop Services Elevation of PrivilegeImportant7.8
CVE-2026-61367Windows Remote Desktop ServicesWindows Remote Desktop Services Elevation of PrivilegeImportant7.8
CVE-2026-61923Windows Display Enhancement ServiceWindows Display Enhancement Service Elevation of PrivilegeImportant7.8
CVE-2026-61925Windows InstallerWindows Installer Elevation of PrivilegeImportant7.8
CVE-2026-61926Windows USB DriverWindows USB Driver Elevation of PrivilegeImportant7.8
CVE-2026-61930Windows KernelWindows Kernel Elevation of PrivilegeImportant7.8
CVE-2026-61932Windows DWM Core LibraryWindows DWM Core Library Elevation of PrivilegeImportant7.8
CVE-2026-61934Windows Bind Filter DriverWindows Bind Filter Driver Elevation of PrivilegeImportant7.8
CVE-2026-61937Windows HTTP.sysWindows HTTP.sys Elevation of PrivilegeImportant7.8
CVE-2026-62688Windows MIDI Service ModuleWindows MIDI Service Module Elevation of PrivilegesImportant7.8
CVE-2026-62692Windows Remote Desktop ServicesWindows Remote Desktop Services Elevation of PrivilegeImportant7.8
CVE-2026-62695Windows StorageWindows Storage Elevation of PrivilegeImportant7.8
CVE-2026-62696Windows Program Compatibility Assistant ServiceWindows Program Compatibility Assistant Service Elevation of PrivilegeImportant7.8
CVE-2026-62698Microsoft Digest AuthenticationMicrosoft Digest Authentication Elevation of PrivilegeImportant7.8
CVE-2026-62700Windows NTFSWindows NTFS Elevation of PrivilegeImportant7.8
CVE-2026-62701Windows Telephony ServiceWindows Telephony Service Elevation of PrivilegeImportant7.8
CVE-2026-62707Windows Modern Device Management (MDM)Windows Modern Device Management (MDM) Elevation of PrivilegeImportant7.8
CVE-2026-62710Windows Device Association ServiceWindows Device Association Service Elevation of PrivilegeImportant7.8
CVE-2026-62711Windows Win32KWindows Win32k Elevation of PrivilegeImportant7.8
CVE-2026-62712Windows Win32KWindows Win32k Elevation of PrivilegeImportant7.8
CVE-2026-62713Windows Cloud Files Mini Filter DriverWindows Cloud Files Mini Filter Driver Elevation of PrivilegeImportant7.8
CVE-2026-62717Windows Message QueuingWindows Message Queuing Elevation of PrivilegeImportant7.8
CVE-2026-62719Windows Message QueuingWindows Message Queuing Elevation of PrivilegeImportant7.8
CVE-2026-62721User-Mode Power Service (UMPS)Windows User-Mode Power Service (UMPS) Elevation of PrivilegeImportant7.8
CVE-2026-62722Windows Brokering File SystemMicrosoft Brokering File System Elevation of PrivilegeImportant7.8
CVE-2026-62732Windows Telephony ServiceWindows Telephony Service Elevation of PrivilegeImportant7.8
CVE-2026-62733Windows Win32KWindows Win32k Elevation of PrivilegeImportant7.8
CVE-2026-62735Windows HTTP.sysWindows HTTP.sys Elevation of PrivilegeImportant7.8
CVE-2026-62736Windows DHCP ClientWindows DHCP Client Elevation of PrivilegeImportant7.8
CVE-2026-62737Windows KernelWindows Kernel Elevation of PrivilegeImportant7.8
CVE-2026-62739Windows HTTP.sysWindows HTTP.sys Elevation of PrivilegeImportant7.8
CVE-2026-62741Windows HTTP.sysWindows HTTP.sys Elevation of PrivilegeImportant7.8
CVE-2026-62747Windows Device Association ServiceWindows Device Association Service Elevation of PrivilegeImportant7.8
CVE-2026-62751Windows Projected File SystemWindows Projected File System Elevation of PrivilegeImportant7.8
CVE-2026-62752Windows KerberosWindows Kerberos Elevation of PrivilegeImportant7.8
CVE-2026-62754Windows KerberosWindows Kerberos Elevation of PrivilegeImportant7.8
CVE-2026-62755Windows DHCP ClientWindows DHCP Client Elevation of PrivilegeImportant7.8
CVE-2026-62758Windows Remote Access Connection ManagerWindows Remote Access Connection Manager Elevation of PrivilegeImportant7.8
CVE-2026-62761Windows DHCP ServerWindows DHCP Server Elevation of PrivilegeImportant7.8
CVE-2026-62768Windows InstallerWindows Installer Elevation of PrivilegeImportant7.8
CVE-2026-62770Windows ShellWindows Shell Elevation of PrivilegeImportant7.8
CVE-2026-62771Windows Cloud Files Mini Filter DriverWindows Cloud Files Mini Filter Driver Elevation of PrivilegeImportant7.8
CVE-2026-62772Windows Container Isolation FS Filter Driver (unionfs.sys)Windows Container Isolation FS Filter Driver (unionfs.sys) Elevation of PrivilegeImportant7.8
CVE-2026-62776Windows DHCP ServerWindows DHCP Server Elevation of PrivilegeImportant7.8
CVE-2026-62777Windows License ManagerWindows License Manager Elevation of PrivilegeImportant7.8
CVE-2026-62779Windows SchannelWindows Schannel Elevation of PrivilegeImportant7.8
CVE-2026-62783Windows Remote Access Connection ManagerWindows Remote Access Connection Manager Elevation of PrivilegeImportant7.8
CVE-2026-62797Windows NTFSWindows NTFS Elevation of PrivilegeImportant7.8
CVE-2026-62799Windows SMB ClientWindows SMB Client Elevation of PrivilegeImportant7.8
CVE-2026-62803Windows DHCP ServerWindows DHCP Server Elevation of PrivilegeImportant7.8
CVE-2026-62807Windows DHCP ServerWindows DHCP Server Elevation of PrivilegeImportant7.8
CVE-2026-62811Windows HTTP.sysWindows HTTP.sys Elevation of PrivilegeImportant7.8
CVE-2026-62812Windows DHCP ServerWindows DHCP Server Elevation of PrivilegeImportant7.8
CVE-2026-62832Windows User Profile ServiceWindows User Profile Service Elevation of PrivilegeImportant7.8
CVE-2026-62871.NET.NET Elevation of PrivilegeImportant7.8
CVE-2026-62876Windows Win32KWindows Win32k Elevation of PrivilegeImportant7.8
CVE-2026-62877Windows Win32KWindows Win32k Elevation of PrivilegeImportant7.8
CVE-2026-62880Windows NTFSWindows NTFS Elevation of PrivilegeImportant7.8
CVE-2026-62885Windows Win32KWindows Win32k Elevation of PrivilegeImportant7.8
CVE-2026-62886.NET.NET Elevation of PrivilegeImportant7.8
CVE-2026-62888Windows DWM Core LibraryWindows DWM Core Library Elevation of PrivilegeImportant7.8
CVE-2026-62894Windows DWM Core LibraryWindows DWM Core Library Elevation of PrivilegeImportant7.8
CVE-2026-62909.NET.NET Elevation of PrivilegeImportant7.8
CVE-2026-63527Microsoft Office WordMicrosoft Office Word Remote Code ExecutionImportant7.8
CVE-2026-63533Microsoft OfficeMicrosoft Office Remote Code ExecutionImportant7.8
CVE-2026-64904Microsoft OfficeMicrosoft Office Remote Code ExecutionImportant7.8
CVE-2026-64905Microsoft Office WordMicrosoft Office Word Remote Code ExecutionImportant7.8
CVE-2026-64906Microsoft Office AccessMicrosoft Access Remote Code ExecutionImportant7.8
CVE-2026-64908Microsoft Office AccessMicrosoft Access Remote Code ExecutionImportant7.8
CVE-2026-64912Microsoft Office AccessMicrosoft Access Remote Code ExecutionImportant7.8
CVE-2026-64914Microsoft Office AccessMicrosoft Access Remote Code ExecutionImportant7.8
CVE-2026-64915Microsoft Office WordMicrosoft Office Word Remote Code ExecutionImportant7.8
CVE-2026-64919Microsoft Office AccessMicrosoft Access Remote Code ExecutionImportant7.8
CVE-2026-64920Microsoft Office AccessMicrosoft Access Remote Code ExecutionImportant7.8
CVE-2026-65656Microsoft OfficeMicrosoft Office Remote Code ExecutionImportant7.8
CVE-2026-65661Microsoft OfficeMicrosoft Office Remote Code ExecutionImportant7.8
CVE-2026-65671Windows Remote Access APIRemote Access API Elevation of PrivilegeImportant7.8
CVE-2026-65672Windows Remote Access APIRemote Access API Elevation of PrivilegeImportant7.8
CVE-2026-65673Microsoft Entra Connect SyncMicrosoft Entra Connect Elevation of PrivilegeImportant7.8
CVE-2026-65773Windows KernelWindows Kernel Elevation of PrivilegeImportant7.8
CVE-2026-65774Windows InstallerWindows Installer Elevation of PrivilegeImportant7.8
CVE-2026-65775Windows Win32KWindows Win32k Elevation of PrivilegeImportant7.8
CVE-2026-65786Desktop Window ManagerDesktop Window Manager Elevation of PrivilegeImportant7.8
CVE-2026-65787Desktop Window ManagerDesktop Window Manager Elevation of PrivilegeImportant7.8
CVE-2026-65790Windows Message QueuingWindows Message Queuing Elevation of PrivilegeImportant7.8
CVE-2026-65810.NET Framework.NET Framework Elevation of PrivilegeImportant7.8
CVE-2026-65814Windows Storage Port DriverMicrosoft Windows Storage Port Driver Elevation of PrivilegeImportant7.8
CVE-2026-66804Windows Cross Device ServiceMicrosoft Windows Cross Device Service Elevation of PrivilegeImportant7.8
CVE-2026-68792Microsoft OfficeMicrosoft Office Elevation of PrivilegeImportant7.8
CVE-2026-68793Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68795Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68796Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68798Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68800Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68801Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68803Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68805Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68806Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68807Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68810Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68811Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68812Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68814Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68815Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-68817Microsoft Office ExcelMicrosoft Excel Remote Code ExecutionImportant7.8
CVE-2026-69278Visual Studio CodeVisual Studio Code Security Feature BypassImportant7.8
CVE-2026-70311Microsoft Office WordMicrosoft Office Word Remote Code ExecutionImportant7.8
CVE-2026-70313Microsoft Office PowerPointMicrosoft PowerPoint Remote Code ExecutionImportant7.8
CVE-2026-70335GitHub Copilot and Visual Studio CodeGitHub Copilot and Visual Studio Code Elevation of PrivilegeImportant7.8
CVE-2026-70338Microsoft PowerShellMicrosoft PowerShell Security Feature BypassImportant7.8
CVE-2026-70344Windows InstallerWindows Installer Elevation of PrivilegeImportant7.8
CVE-2026-70345Windows InstallerWindows Installer Elevation of PrivilegeImportant7.8
CVE-2026-70346Windows InstallerWindows Installer Elevation of PrivilegeImportant7.8
CVE-2026-70347Windows InstallerWindows Installer Elevation of PrivilegeImportant7.8
CVE-2026-70354.NET.NET Core Remote Code ExecutionImportant7.8
CVE-2026-54113Windows KernelRemote Procedure Call Denial of ServiceImportant7.5
CVE-2026-59132Windows TCP/IPWindows TCP/IP Denial of ServiceImportant7.5
CVE-2026-59134Remote Desktop ClientRemote Desktop Client Remote Code ExecutionImportant7.5
CVE-2026-61352Remote Desktop ClientRemote Desktop Client Remote Code ExecutionImportant7.5
CVE-2026-61363Remote Desktop ClientRemote Desktop Client Remote Code ExecutionImportant7.5
CVE-2026-62787Windows DNSWindows DNS Server Remote Code ExecutionImportant7.5
CVE-2026-62898Microsoft QUICMicrosoft QUIC Information DisclosureImportant7.5
CVE-2026-62901.NET.NET Denial of ServiceImportant7.5
CVE-2026-65681Windows iSCSI Target ServiceWindows iSCSI Target Service Denial of ServiceImportant7.5
CVE-2026-58612Microsoft PowerShell CorePowerShell Information DisclosureImportant7.4
CVE-2026-59119Microsoft PowerShellPowerShell Elevation of PrivilegeImportant7.3
CVE-2026-62914Microsoft Exchange ServerMicrosoft Exchange Server SpoofingImportant7.3
CVE-2026-64900Microsoft Office SharePointMicrosoft SharePoint Server SpoofingImportant7.3
CVE-2026-68821Windows Package ManagerWindows Package Manager Elevation of PrivilegeImportant7.3
CVE-2026-70355Microsoft Office SharePointMicrosoft SharePoint Server Elevation of PrivilegeImportant7.3
CVE-2026-47299Azure Monitor AgentAzure Monitor Agent Elevation of PrivilegeImportant7.2
CVE-2026-62910Microsoft Exchange ServerMicrosoft Exchange Server Elevation of PrivilegeImportant7.2
CVE-2026-65675Visual Studio Code CoPilot Chat ExtensionCoPilot Chat Security Feature BypassImportant7.1
CVE-2026-50472Windows LUAFVWindows LUA File Virtualization Filter Driver Elevation of PrivilegeImportant7.0
CVE-2026-59122Windows Telephony ServiceWindows Telephony Service Elevation of PrivilegeImportant7.0
CVE-2026-59125Virtual Hard Disk (VHD) Miniport DriverVirtual Hard Disk (VHD) Miniport Driver Elevation of Privilege VulernabilityImportant7.0
CVE-2026-59126Windows Event Logging ServiceWindows Event Logging Service Elevation of PrivilegeImportant7.0
CVE-2026-61346Windows Graphics KernelWindows Graphics Kernel Elevation of PrivilegeImportant7.0
CVE-2026-61348Windows Ancillary Function Driver for WinSockWindows Ancillary Function Driver for WinSock Elevation of PrivilegeImportant7.0
CVE-2026-61361Windows DHCP ClientWindows DHCP Client Remote Code ExecutionImportant7.0
CVE-2026-61366Windows Network Connection BrokerWindows Network Connection Broker Elevation of PrivilegeImportant7.0
CVE-2026-61927Windows Bind Filter DriverWindows Bind Filter Driver Elevation of PrivilegeImportant7.0
CVE-2026-61929Windows KernelWindows Kernel Elevation of PrivilegeImportant7.0
CVE-2026-61938Windows InstallerWindows Installer Elevation of PrivilegeImportant7.0
CVE-2026-61939WinlogonWinlogon Elevation of PrivilegeImportant7.0
CVE-2026-62690Windows Push NotificationsWindows Push Notifications Elevation of PrivilegeImportant7.0
CVE-2026-62693Windows MIDI Service ModuleWindows MIDI Service Module Elevation of PrivilegesImportant7.0
CVE-2026-62705Windows Bind Filter DriverMicrosoft Brokering File System Elevation of PrivilegeImportant7.0
CVE-2026-62723Windows Telephony ServiceWindows Telephony Service Elevation of PrivilegeImportant7.0
CVE-2026-62724Windows Telephony ServiceWindows Telephony Service Elevation of PrivilegeImportant7.0
CVE-2026-62725Windows Telephony ServiceWindows Telephony Service Elevation of PrivilegeImportant7.0
CVE-2026-62726Windows Telephony ServiceWindows Telephony Service Elevation of PrivilegeImportant7.0
CVE-2026-62727Windows Telephony ServiceWindows Telephony Service Elevation of PrivilegeImportant7.0
CVE-2026-62728Windows Common Log File System DriverWindows Common Log File System Driver Elevation of PrivilegeImportant7.0
CVE-2026-62729Windows Telephony ServiceWindows Telephony Service Elevation of PrivilegeImportant7.0
CVE-2026-62734Windows Telephony ServiceWindows Telephony Service Elevation of PrivilegeImportant7.0
CVE-2026-62748Windows Telephony ServiceWindows Telephony Service Elevation of PrivilegeImportant7.0
CVE-2026-62749Windows KernelWindows Kernel Elevation of PrivilegeImportant7.0
CVE-2026-62753Windows HTTP.sysWindows HTTP.sys Elevation of PrivilegeImportant7.0
CVE-2026-62766Windows KerberosWindows Kerberos Elevation of PrivilegeImportant7.0
CVE-2026-62773Windows KerberosWindows Kerberos Elevation of PrivilegeImportant7.0
CVE-2026-62774Windows Graphics KernelWindows Graphics Kernel Elevation of PrivilegeImportant7.0
CVE-2026-62780Windows KernelWindows Kernel Elevation of PrivilegeImportant7.0
CVE-2026-62788Windows KernelWindows Kernel Elevation of PrivilegeImportant7.0
CVE-2026-62892Capability Access Management Service (camsvc)Capability Access Management Service (camsvc) Elevation of PrivilegeImportant7.0
CVE-2026-62897.NET Framework.NET Framework Remote Code ExecutionImportant7.0
CVE-2026-62908Windows Backup EngineWindows Backup Engine Elevation of PrivilegeImportant7.0
CVE-2026-65678Windows Win32KWindows Win32k Elevation of PrivilegeImportant7.0
CVE-2026-65776Windows Win32KWindows Win32k Elevation of PrivilegeImportant7.0
CVE-2026-65778Windows AutopilotWindows Autopilot Elevation of PrivilegeImportant7.0
CVE-2026-65779Windows AutopilotWindows Autopilot Elevation of PrivilegeImportant7.0
CVE-2026-65780Windows AutopilotWindows Autopilot Elevation of PrivilegeImportant7.0
CVE-2026-65781Windows AutopilotWindows Autopilot Elevation of PrivilegeImportant7.0
CVE-2026-65782Windows AutopilotWindows Autopilot Elevation of PrivilegeImportant7.0
CVE-2026-65783Windows AutopilotWindows Autopilot Elevation of PrivilegeImportant7.0
CVE-2026-65788Desktop Window ManagerDesktop Window Manager Elevation of PrivilegeImportant7.0
CVE-2026-68820Windows Ancillary Function Driver for WinSockWindows Ancillary Function Driver for WinSock Elevation of PrivilegeImportant7.0
CVE-2026-70307Windows Ancillary Function Driver for WinSockWindows Ancillary Function Driver for WinSock Elevation of PrivilegeImportant7.0
CVE-2026-62699Windows Universal Disk Format File System Driver (UDFS)Windows Universal Disk Format File System Driver (UDFS) Remote Code ExecutionImportant6.8
CVE-2026-62702Windows Graphics KernelWindows Graphics Kernel Denial of ServiceImportant6.8
CVE-2026-62769Windows DNSWindows DNS Elevation of PrivilegeImportant6.7
CVE-2026-62881Windows DNSWindows DNS Elevation of PrivilegeImportant6.7
CVE-2026-62883Windows DNSWindows DNS Elevation of PrivilegeImportant6.7
CVE-2026-65680Microsoft OneDriveMicrosoft OneDrive for MacOS Elevation of PrivilegeImportant6.7
CVE-2026-65795Windows DNSWindows DNS Elevation of PrivilegeImportant6.7
CVE-2026-65797Windows DNSWindows DNS Elevation of PrivilegeImportant6.7
CVE-2026-65798Windows DNSWindows DNS Elevation of PrivilegeImportant6.7
CVE-2026-65799Windows DNSWindows DNS Elevation of PrivilegeImportant6.7
CVE-2026-70304Windows DNSWindows DNS Elevation of PrivilegeImportant6.7
CVE-2026-70330Windows DNSWindows DNS Elevation of PrivilegeImportant6.7
CVE-2026-61920Windows DNSWindows DNS Server Remote Code ExecutionImportant6.6
CVE-2026-40375Dynamics Business CentralMicrosoft Dynamics Business Central Information DisclosureImportant6.5
CVE-2026-47285Visual Studio CodeVisual Studio Code Information DisclosureImportant6.5
CVE-2026-58639Microsoft Office SharePointMicrosoft SharePoint Server SpoofingImportant6.5
CVE-2026-59138Microsoft Remote Registry ServiceMicrosoft Remote Registry Service Denial of ServiceImportant6.5
CVE-2026-61345Microsoft Remote Registry ServiceMicrosoft Remote Registry Service Denial of ServiceImportant6.5
CVE-2026-61918Remote Desktop ClientWindows Remote Desktop Client Information DisclosureImportant6.5
CVE-2026-61921Remote Desktop ClientWindows Remote Desktop Client Information DisclosureImportant6.5
CVE-2026-61924Remote Desktop ClientWindows Remote Desktop Client Information DisclosureImportant6.5
CVE-2026-62714Windows DHCP ServerWindows DHCP Server Information DisclosureImportant6.5
CVE-2026-62715Windows DHCP ServerWindows DHCP Server Information DisclosureImportant6.5
CVE-2026-62716Windows DHCP ServerWindows DHCP Server Information DisclosureImportant6.5
CVE-2026-62718Windows DHCP ServerWindows DHCP Server Information DisclosureImportant6.5
CVE-2026-62720Windows DHCP ServerWindows DHCP Server Information DisclosureImportant6.5
CVE-2026-62742Windows DHCP ServerWindows DHCP Server Information DisclosureImportant6.5
CVE-2026-62745Windows DHCP ServerWindows DHCP Server Information DisclosureImportant6.5
CVE-2026-62750Windows HTTP Protocol StackWindows HTTP Protocol Stack TamperingImportant6.5
CVE-2026-62782Windows SMB ClientWindows SMB Client Information DisclosureImportant6.5
CVE-2026-62814Windows DHCP ServerWindows DHCP Server Information DisclosureImportant6.5
CVE-2026-62837Microsoft Office SharePointMicrosoft SharePoint Server Information DisclosureImportant6.5
CVE-2026-62839Microsoft Office SharePointMicrosoft SharePoint Server SpoofingImportant6.5
CVE-2026-62902.NET.NET Information DisclosureImportant6.5
CVE-2026-62912Microsoft Exchange ServerMicrosoft Exchange Server Denial of ServiceImportant6.5
CVE-2026-62915Microsoft Exchange ServerMicrosoft Exchange Server Security Feature BypassImportant6.5
CVE-2026-63512Microsoft Office SharePointMicrosoft SharePoint Server TamperingImportant6.5
CVE-2026-63516Microsoft Office SharePointMicrosoft SharePoint Server SpoofingImportant6.5
CVE-2026-65769Microsoft Teams MobileMicrosoft Teams iOS Information DisclosureImportant6.5
CVE-2026-65785Windows DHCP ClientWindows DHCP Client Denial of ServiceImportant6.5
CVE-2026-65794Windows SMB ClientWindows SMB Client Information DisclosureImportant6.5
CVE-2026-65806Azure CycleCloudAzure CycleCloud Information DisclosureImportant6.5
CVE-2026-65813Microsoft Exchange ServerMicrosoft Exchange Server Elevation of PrivilegeImportant6.5
CVE-2026-66301Microsoft Dynamics 365 (on-premises)Microsoft Dynamics 365 (On-Premises) Information DisclosureImportant6.5
CVE-2026-69550Windows App for MacWindows App for Mac Information DisclosureImportant6.5
CVE-2026-70327Microsoft Office ExcelMicrosoft Excel Information DisclosureImportant6.5
CVE-2026-70328Microsoft Office ExcelMicrosoft Excel Information DisclosureImportant6.5
CVE-2026-62708Windows KernelWindows Kernel Elevation of PrivilegeImportant6.4
CVE-2026-62899.NET.NET Security Feature BypassImportant5.9
CVE-2026-62900.NET.NET Information DisclosureImportant5.9
CVE-2026-68819Windows Network File SystemWindows Network File System Denial of ServiceImportant5.9
CVE-2026-59130AMD ZenAMD Zen Information DisclosureImportant5.6
CVE-2026-59131AMD ZenAMD Zen Information DisclosureImportant5.6
CVE-2026-54123Microsoft Defender for EndpointMicrosoft Defender for Endpoint for Mac Information DisclosureImportant5.5
CVE-2026-59128Windows Encrypting File System (EFS)Windows Encrypting File System (EFS) Information DisclosureImportant5.5
CVE-2026-59135Microsoft Windows Search ComponentMicrosoft Windows Search Component Information DisclosureImportant5.5
CVE-2026-59136Microsoft COM for WindowsMicrosoft COM for Windows Information DisclosureImportant5.5
CVE-2026-59137Windows Event Logging ServiceWindows Event Logging Service Information DisclosureImportant5.5
CVE-2026-61347Windows Event Logging ServiceWindows Event Logging Service Information DisclosureImportant5.5
CVE-2026-61360Windows GDIWindows GDI Information DisclosureImportant5.5
CVE-2026-61928Windows HelloWindows Hello TamperingImportant5.5
CVE-2026-61933Windows DWM Core LibraryWindows DWM Core Library Information DisclosureImportant5.5
CVE-2026-61936Windows Defender Firewall ServiceWindows Defender Firewall Service Security Feature BypassImportant5.5
CVE-2026-62703Windows DWM Core LibraryWindows DWM Core Library Information DisclosureImportant5.5
CVE-2026-62709Windows GDI+Windows GDI+ Information DisclosureImportant5.5
CVE-2026-62730Windows Wired AutoConfig ServiceWindows Wired AutoConfig Service Information DisclosureImportant5.5
CVE-2026-62738Windows Management InstrumentationWindows Management Instrumentation Information DisclosureImportant5.5
CVE-2026-62740Windows Imaging ComponentWindows Imaging Component Information DisclosureImportant5.5
CVE-2026-62743Windows Win32KWin32k Information DisclosureImportant5.5
CVE-2026-62746Windows Win32KWin32k Information DisclosureImportant5.5
CVE-2026-62775Windows Container Isolation FS Filter Driver (unionfs.sys)Windows Container Isolation FS Filter Driver (unionfs.sys) Information DisclosureImportant5.5
CVE-2026-62786Windows Win32KWin32k Information DisclosureImportant5.5
CVE-2026-62793Windows NTFSWindows NTFS Information DisclosureImportant5.5
CVE-2026-62796Windows NTFSWindows NTFS Information DisclosureImportant5.5
CVE-2026-62798Windows Win32KWin32k Information DisclosureImportant5.5
CVE-2026-62842Microsoft OfficeMicrosoft Office Graphics Component Information DisclosureImportant5.5
CVE-2026-62887Windows NTFSWindows NTFS Information DisclosureImportant5.5
CVE-2026-63517Microsoft OfficeMicrosoft Office Graphics Component Information DisclosureImportant5.5
CVE-2026-63521Microsoft Office WordMicrosoft Office Word Information DisclosureImportant5.5
CVE-2026-63524Microsoft OfficeMicrosoft Office Information DisclosureImportant5.5
CVE-2026-63528Microsoft Office WordMicrosoft Office Word Information DisclosureImportant5.5
CVE-2026-63529Microsoft OfficeMicrosoft Office Information DisclosureImportant5.5
CVE-2026-63530Microsoft Office WordMicrosoft Office Word Information DisclosureImportant5.5
CVE-2026-63531Microsoft Office WordMicrosoft Office Word Information DisclosureImportant5.5
CVE-2026-64899Microsoft OfficeMicrosoft Office Information DisclosureImportant5.5
CVE-2026-64917Microsoft Office WordMicrosoft Office Word Information DisclosureImportant5.5
CVE-2026-65662Windows GDIWindows GDI Information DisclosureImportant5.5
CVE-2026-65784Windows NTFSWindows NTFS Information DisclosureImportant5.5
CVE-2026-66806Microsoft Office WordMicrosoft Office Word Information DisclosureImportant5.5
CVE-2026-66809Microsoft OfficeMicrosoft Office Graphics Component Information DisclosureImportant5.5
CVE-2026-66810Microsoft Office WordMicrosoft Office Word Information DisclosureImportant5.5
CVE-2026-68797Microsoft Office ExcelMicrosoft Excel Information DisclosureImportant5.5
CVE-2026-68799Microsoft Office ExcelMicrosoft Excel Information DisclosureImportant5.5
CVE-2026-68802Microsoft Office ExcelMicrosoft Excel Information DisclosureImportant5.5
CVE-2026-68808Microsoft Office ExcelMicrosoft Excel Information DisclosureImportant5.5
CVE-2026-68809Microsoft Office PowerPointPowerpoint Information DisclosureImportant5.5
CVE-2026-68813Microsoft Office ExcelMicrosoft Excel Information DisclosureImportant5.5
CVE-2026-70310Microsoft Office WordMicrosoft Word Information DisclosureImportant5.5
CVE-2026-70312Microsoft Office PowerPointPowerpoint Information DisclosureImportant5.5
CVE-2026-70314Microsoft OfficeMicrosoft Office Information DisclosureImportant5.5
CVE-2026-70315Microsoft OfficeMicrosoft Office Information DisclosureImportant5.5
CVE-2026-70316Microsoft Office PowerPointPowerpoint Information DisclosureImportant5.5
CVE-2026-70317Microsoft OfficeMicrosoft Office Information DisclosureImportant5.5
CVE-2026-70318Microsoft Office ExcelMicrosoft Excel Information DisclosureImportant5.5
CVE-2026-70319Microsoft Office WordMicrosoft Office Word Information DisclosureImportant5.5
CVE-2026-70320Microsoft Office PowerPointPowerpoint Information DisclosureImportant5.5
CVE-2026-70322Microsoft Office PowerPointPowerpoint Information DisclosureImportant5.5
CVE-2026-70323Microsoft OfficeMicrosoft Office Information DisclosureImportant5.5
CVE-2026-70325Microsoft Office PowerPointPowerpoint Information DisclosureImportant5.5
CVE-2026-70348Windows Management ServicesWindows Management Services Denial of ServiceImportant5.5
CVE-2026-72971Windows Container Isolation FS Filter Driver (unionfs.sys)Windows Container Isolation FS Filter Driver (unionfs.sys) TamperingImportant5.5
CVE-2026-70339Microsoft Edge (Chromium-based)Microsoft Edge (Chromium-based) Remote Code ExecutionImportant5.4
CVE-2026-62757Windows SchannelWindows Schannel Security Feature BypassImportant5.3
CVE-2026-65777Windows Active DirectoryActive Directory Security Feature BypassImportant5.3
CVE-2026-61368Windows Hyper-VWindows Hyper-V Information DisclosureImportant5.0
CVE-2026-61350Windows NTFSWindows NTFS Information DisclosureImportant4.6
CVE-2026-62829Microsoft Office SharePointMicrosoft SharePoint Server SpoofingImportant4.6
CVE-2026-62917Microsoft Office SharePointMicrosoft SharePoint Server SpoofingImportant4.6
CVE-2026-64897Microsoft Office SharePointMicrosoft SharePoint Server SpoofingImportant4.6
CVE-2026-64902Microsoft Office SharePointMicrosoft SharePoint Server SpoofingImportant4.6
CVE-2026-64916Microsoft Office SharePointMicrosoft SharePoint Server SpoofingImportant4.6
CVE-2026-64922Microsoft Office SharePointMicrosoft SharePoint Server SpoofingImportant4.6
CVE-2026-62882Microsoft Office OutlookMicrosoft Outlook SpoofingImportant4.3
CVE-2026-56179Windows Network Address Translation (NAT)Windows Network Address Translation (NAT) SpoofingModerate8.3

Published later in the month (54)

Microsoft Edge updates, out-of-band fixes and cloud services. “Fixed by Microsoft” means a cloud service Microsoft has already patched: there is nothing to install.

DateCVEWhatSeverityAction
6 AugCVE-2026-56162Azure SQL Database Elevation of PrivilegeCriticalFixed by Microsoft
6 AugCVE-2026-63508Microsoft Planetary Computer Pro Elevation of PrivilegeCriticalFixed by Microsoft
6 AugCVE-2026-65667Microsoft Teams Elevation of PrivilegeCriticalFixed by Microsoft
20 AugCVE-2026-65770Azure Managed Instance for Apache Cassandra Remote Code ExecutionCriticalFixed by Microsoft
20 AugCVE-2026-65801Microsoft Exchange Online Elevation of PrivilegeCriticalFixed by Microsoft
20 AugCVE-2026-65816Azure Arc Elevation of PrivilegeCriticalFixed by Microsoft
20 AugCVE-2026-69502Azure SQL Database Elevation of PrivilegeCriticalFixed by Microsoft
20 AugCVE-2026-69555Azure Arc Elevation of PrivilegeCriticalFixed by Microsoft
20 AugCVE-2026-69836Microsoft Entra ID Remote Code ExecutionCriticalFixed by Microsoft
6 AugCVE-2026-50481Azure Active Directory Elevation of PrivilegeCriticalFixed by Microsoft
6 AugCVE-2026-50515Azure Service Bus Remote Code ExecutionCriticalFixed by Microsoft
6 AugCVE-2026-59115Microsoft Entra Provisioning Service Elevation of PrivilegeCriticalFixed by Microsoft
6 AugCVE-2026-62830Azure SRE Agent Elevation of PrivilegeCriticalFixed by Microsoft
20 AugCVE-2026-63509Microsoft Fabric Elevation of PrivilegeCriticalFixed by Microsoft
20 AugCVE-2026-68782Azure SQL Database Elevation of PrivilegeCriticalFixed by Microsoft
20 AugCVE-2026-68789Azure SQL Database Elevation of PrivilegeCriticalFixed by Microsoft
20 AugCVE-2026-69851Microsoft Entra ID Elevation of PrivilegeCriticalFixed by Microsoft
6 AugCVE-2026-62873Microsoft 365 Admin Center Elevation of PrivilegeCriticalFixed by Microsoft
6 AugCVE-2026-56161Azure Logic Apps Information DisclosureCriticalFixed by Microsoft
6 AugCVE-2026-62896Microsoft Teams Elevation of PrivilegeCriticalFixed by Microsoft
20 AugCVE-2026-69400Azure Logic Apps Elevation of PrivilegeCriticalFixed by Microsoft
6 AugCVE-2026-70332Microsoft Office SharePoint SpoofingCriticalFixed by Microsoft
6 AugCVE-2026-50516Microsoft Azure Kubernetes Service Elevation of PrivilegeCriticalFixed by Microsoft
6 AugCVE-2026-59118Copilot Cowork Elevation of PrivilegeCriticalFixed by Microsoft
20 AugCVE-2026-62834Azure Data Factory Elevation of PrivilegeCriticalFixed by Microsoft
20 AugCVE-2026-66309Azure SQL Database Elevation of PrivilegeCriticalFixed by Microsoft
6 AugCVE-2026-68823Azure Confidential Ledger Remote Code ExecutionCriticalFixed by Microsoft
18 AugCVE-2026-24301Microsoft Copilot Information DisclosureCriticalFixed by Microsoft
6 AugCVE-2026-49163Application Insights Profiler Elevation of PrivilegeCriticalFixed by Microsoft
6 AugCVE-2026-62869Azure Entra ID SpoofingCriticalFixed by Microsoft
6 AugCVE-2026-65668Microsoft Purview eDiscovery Elevation of PrivilegeCriticalFixed by Microsoft
6 AugCVE-2026-62836Azure SQL Managed Instance Elevation of PrivilegeCriticalFixed by Microsoft
20 AugCVE-2026-66800Azure Data Factory Information DisclosureCriticalFixed by Microsoft
20 AugCVE-2026-69519Azure Stack HCI Information DisclosureCriticalFixed by Microsoft
20 AugCVE-2026-69558Microsoft Partner Center Information DisclosureCriticalFixed by Microsoft
20 AugCVE-2026-69419Azure Data Manager for Energy Remote Code ExecutionCriticalFixed by Microsoft
20 AugCVE-2026-69543Azure Virtual Machines Elevation of PrivilegeCriticalFixed by Microsoft
6 AugCVE-2026-63522Azure SQL Database Elevation of PrivilegeCriticalFixed by Microsoft
20 AugCVE-2026-69855Microsoft Copilot in Azure Information DisclosureCriticalFixed by Microsoft
6 AugCVE-2026-62918Microsoft Teams SpoofingCriticalFixed by Microsoft
28 AugCVE-2026-72984Microsoft Edge (Chromium-based) Remote Code ExecutionImportantUpdate
28 AugCVE-2026-70341Microsoft Edge (Chromium-based) Remote Code ExecutionImportantUpdate
14 AugCVE-2026-72970Microsoft Edge (Chromium-based) Remote Code ExecutionImportantUpdate
14 AugCVE-2026-69414Microsoft Defender Elevation of PrivilegeImportantUpdate
20 AugCVE-2026-55013Windows Remote Help Defense SpoofingImportantUpdate
28 AugCVE-2026-66324Microsoft Edge (Chromium-based) SpoofingImportantUpdate
20 AugCVE-2026-70105Microsoft Word Information DisclosureImportantUpdate
20 AugCVE-2026-55015Microsoft Remote Help Denial of ServiceImportantUpdate
28 AugCVE-2026-66323Microsoft Edge (Chromium-based) Remote Code ExecutionImportantUpdate
28 AugCVE-2026-66798Microsoft Edge (Chromium-based) Remote Code ExecutionImportantUpdate
28 AugCVE-2026-62904Microsoft Edge (Chromium-based) Information DisclosureModerateUpdate
28 AugCVE-2026-70309Microsoft Edge (Chromium-based) Security Feature BypassModerateUpdate
28 AugCVE-2026-70331Microsoft Edge for iOS SpoofingModerateUpdate
28 AugCVE-2026-58616Copilot Chat (Microsoft Edge) Information DisclosureModerateUpdate

From Microsoft’s Security Update Guide and CISA’s Known Exploited Vulnerabilities catalog, checked 7 hours ago. Only vulnerabilities Microsoft itself issued are counted; Chromium fixes that Edge inherits are left out. For known problems with the updates themselves, see Windows release health.

← All tools