Find notable cyber news and cases, enriched with sources, timelines, and signals.

Microsoft security patch release for CVE-2026-68820

Security Patch Release
First reported
Last updated
Happening score
H score 35
1 unique sources, 1 articles

Summary

Hide ▲

Microsoft released August 2026 Patch Tuesday updates for Windows operating systems and supported software, fixing 398 vulnerabilities and an actively exploited zero-day. The bundle includes CVE-2026-68820, a privilege-escalation flaw in afd.sys that can help an attacker move from a low-privilege foothold to broader control. Microsoft also flagged CVE-2026-62832 as likely to be exploited, while CVE-2026-72971 was publicly disclosed but assessed as lower impact.

Related Happenings

Microsoft June 2026 Patch Tuesday record 206-vulnerability update

Security Patch Release
H score55 First: 10.06.2026 12:38 Last: 10.06.2026 12:38 Sources 1

About this happening: Microsoft shipped a record 206-vulnerability update for its software portfolio, including three publicly disclosed flaws. The release spans Critical and Important...

Microsoft June 2026 Patch Tuesday record security update bundle

Security Patch Release
H score36 First: 10.06.2026 01:07 Last: 10.06.2026 01:07 Sources 1

About this happening: Microsoft released a record Patch Tuesday bundle for June 2026 that patches nearly 200 security holes across Windows operating systems and supported software,...

CCB urgent patch warning for CVE-2026-41089 on Windows servers

Public Sector Action
H score48 First: 01.06.2026 15:30 Last: 01.06.2026 15:30 Sources 1

About this happening: Belgium's CCB warned that CVE-2026-41089 is being actively exploited in the wild, urging admins to immediately patch vulnerable Windows servers because the fla...

Microsoft security patch release for CVE-2026-45659

Security Patch Release
H score23 First: 26.05.2026 14:49 Last: 26.05.2026 14:49 Sources 1

About this happening: Microsoft released SharePoint updates on May 26, 2026 for CVE-2026-45659, a CVSS 8.8 remote code execution flaw caused by deserialization of untrusted data...

Microsoft security patch release for CVE-2026-41091 and CVE-2026-45498

Security Patch Release
H score44 First: 21.05.2026 10:49 Last: 21.05.2026 10:49 Sources 1

About this happening: Microsoft rolled out security updates for Defender and related malware protection components to address two zero-days: CVE-2026-41091 and CVE-2026-45498. The fixes cover affected...

Latest development: 21.05.2026 12:52

Microsoft released patches for Microsoft Defender Antimalware Platform version 4.18.26040.7 to address CVE-2026-41091, a link-following privilege-escalation flaw that can let an authorized attacker elevate privileges locally to System, and CVE-2026-45498, a denial-of-service flaw. Microsoft said both vulnerabilities were publicly disclosed and exploited in the wild as zero-days. CISA added both flaws to its Known Exploited Vulnerabilities (KEV) list and urged federal agencies to patch them by June 3.

Timeline

  1. 12.08.2026 00:28 2 articles · 1h ago

    Microsoft releases Windows security updates for 398 vulnerabilities

    Initial Disclosure

    Microsoft released updates for Windows operating systems and supported software, fixing at least 398 security vulnerabilities. The patch set includes CVE-2026-68820, an actively exploited privilege-escalation zero-day in afd.sys, along with CVE-2026-62832, which Microsoft says is likely to be exploited, and CVE-2026-72971, a publicly disclosed low-impact local tampering flaw.

    Show sources