Microsoft security patch release for CVE-2026-41091 and CVE-2026-45498
Security Patch Release
Summary
Hide ▲
Show ▼
Microsoft rolled out security updates for Defender and related malware protection components to address two zero-days: CVE-2026-41091 and CVE-2026-45498. The fixes cover affected Microsoft Malware Protection Engine and Microsoft Defender Antimalware Platform versions reported in the disclosures. Both vulnerabilities were described as exploited in the wild. CVE-2026-41091 is a local privilege-escalation flaw, while CVE-2026-45498 is a denial-of-service issue. CISA added both to its Known Exploited Vulnerabilities catalog and urged federal agencies to patch by June 3.
Related Happenings
COOLCLIENT updated backdoor deploying Msagent.sys
Malware Activity
H score23
First: 24.08.2026 14:51
Last: 24.08.2026 14:51
Sources 1
About this happening:
The COOLCLIENT backdoor now deploys a signed kernel-mode driver to hide itself and related artifacts, increasing stealth during active intrusions. The updated variant is t...
COOLCLIENT updated backdoor deploying Msagent.sys
Malware ActivityAbout this happening: The COOLCLIENT backdoor now deploys a signed kernel-mode driver to hide itself and related artifacts, increasing stealth during active intrusions. The updated variant is t...
Microsoft Defender signature update fixes scan-crash bug on Windows 10 and Windows 11
Security Tool/Service
H score11
First: 19.08.2026 14:14
Last: 19.08.2026 14:14
Sources 1
About this happening:
Microsoft Defender now has a fix for a crash bug that broke scans on some Windows 10 and Windows 11 systems, restoring malware protection after a recent security updat...
Microsoft Defender signature update fixes scan-crash bug on Windows 10 and Windows 11
Security Tool/ServiceAbout this happening: Microsoft Defender now has a fix for a crash bug that broke scans on some Windows 10 and Windows 11 systems, restoring malware protection after a recent security updat...
Microsoft Copilot Personal security update (CVE-2026-24301)
Security Patch Release
H score18
First: 18.08.2026 20:47
Last: 18.08.2026 20:47
Sources 1
About this happening:
Microsoft shipped a security update for Copilot Personal tied to CVE-2026-24301, closing a flaw that could let a crafted link trigger a prompt inside a signed-in s...
Microsoft Copilot Personal security update (CVE-2026-24301)
Security Patch ReleaseAbout this happening: Microsoft shipped a security update for Copilot Personal tied to CVE-2026-24301, closing a flaw that could let a crafted link trigger a prompt inside a signed-in s...
Microsoft security patch release for CVE-2026-62832
Security Patch Release
H score5
First: 12.08.2026 09:41
Last: 12.08.2026 09:41
Sources 1
About this happening:
Microsoft shipped patches for 421 security flaws, including 236 flaws in Windows, as part of a broad update that also remediates multiple named CVEs. The release cover...
Microsoft security patch release for CVE-2026-62832
Security Patch ReleaseAbout this happening: Microsoft shipped patches for 421 security flaws, including 236 flaws in Windows, as part of a broad update that also remediates multiple named CVEs. The release cover...
Microsoft security patch release for CVE-2026-68820
Security Patch Release
H score28
First: 12.08.2026 00:28
Last: 12.08.2026 00:28
Sources 1
About this happening:
Microsoft released August 2026 Patch Tuesday updates for Windows operating systems and supported software, fixing at least 398 vulnerabilities. The bundle includes...
Microsoft security patch release for CVE-2026-68820
Security Patch ReleaseAbout this happening: Microsoft released August 2026 Patch Tuesday updates for Windows operating systems and supported software, fixing at least 398 vulnerabilities. The bundle includes...
Timeline
-
21.05.2026 12:52 3 articles · 3mo ago
Microsoft patches exploited Defender zero-days and CISA adds them to KEV
Initial DisclosureMicrosoft released patches for Microsoft Defender Antimalware Platform version 4.18.26040.7 to address CVE-2026-41091, a link-following privilege-escalation flaw that can let an authorized attacker elevate privileges locally to System, and CVE-2026-45498, a denial-of-service flaw. Microsoft said both vulnerabilities were publicly disclosed and exploited in the wild as zero-days. CISA added both flaws to its Known Exploited Vulnerabilities (KEV) list and urged federal agencies to patch them by June 3.
Show sources
- Microsoft Patches Exploited UnDefend and RedSun Defender Zero-Days — www.securityweek.com — 21.05.2026 12:52
- Microsoft Warns of Two Actively Exploited Defender Vulnerabilities — thehackernews.com — 21.05.2026 13:55
- Microsoft Warns of Two Actively Exploited Defender Vulnerabilities — thehackernews.com — 21.05.2026 13:55
-
21.05.2026 10:49 2 articles · 3mo ago
Microsoft rolls out patches for exploited Defender zero-days
Mitigation Patch UpdateMicrosoft started rolling out fixes for CVE-2026-41091 in Microsoft Malware Protection Engine 1.1.26030.3008 and earlier and CVE-2026-45498 in Microsoft Defender Antimalware Platform 4.18.26030.3011 and earlier after zero-day exploitation affected unpatched Windows devices; CISA also added both vulnerabilities to the KEV Catalog and ordered Federal Civilian Executive Branch agencies to secure Windows endpoints and servers within two weeks, by June 3, under Binding Operational Directive (BOD) 22-01.
Show sources
- Microsoft warns of new Defender zero-days exploited in attacks — www.bleepingcomputer.com — 21.05.2026 10:49
- Microsoft warns of new Defender zero-days exploited in attacks — www.bleepingcomputer.com — 21.05.2026 10:49