Microsoft security patch release for CVE-2026-68820
Security Patch Release
Summary
Hide ▲
Show ▼
Microsoft released August 2026 Patch Tuesday updates for Windows operating systems and supported software, fixing 398 vulnerabilities and an actively exploited zero-day. The bundle includes CVE-2026-68820, a privilege-escalation flaw in afd.sys that can help an attacker move from a low-privilege foothold to broader control. Microsoft also flagged CVE-2026-62832 as likely to be exploited, while CVE-2026-72971 was publicly disclosed but assessed as lower impact.
Related Happenings
Microsoft June 2026 Patch Tuesday record 206-vulnerability update
Security Patch Release
H score55
First: 10.06.2026 12:38
Last: 10.06.2026 12:38
Sources 1
About this happening:
Microsoft shipped a record 206-vulnerability update for its software portfolio, including three publicly disclosed flaws. The release spans Critical and Important...
Microsoft June 2026 Patch Tuesday record 206-vulnerability update
Security Patch ReleaseAbout this happening: Microsoft shipped a record 206-vulnerability update for its software portfolio, including three publicly disclosed flaws. The release spans Critical and Important...
Microsoft June 2026 Patch Tuesday record security update bundle
Security Patch Release
H score36
First: 10.06.2026 01:07
Last: 10.06.2026 01:07
Sources 1
About this happening:
Microsoft released a record Patch Tuesday bundle for June 2026 that patches nearly 200 security holes across Windows operating systems and supported software,...
Microsoft June 2026 Patch Tuesday record security update bundle
Security Patch ReleaseAbout this happening: Microsoft released a record Patch Tuesday bundle for June 2026 that patches nearly 200 security holes across Windows operating systems and supported software,...
CCB urgent patch warning for CVE-2026-41089 on Windows servers
Public Sector Action
H score48
First: 01.06.2026 15:30
Last: 01.06.2026 15:30
Sources 1
About this happening:
Belgium's CCB warned that CVE-2026-41089 is being actively exploited in the wild, urging admins to immediately patch vulnerable Windows servers because the fla...
CCB urgent patch warning for CVE-2026-41089 on Windows servers
Public Sector ActionAbout this happening: Belgium's CCB warned that CVE-2026-41089 is being actively exploited in the wild, urging admins to immediately patch vulnerable Windows servers because the fla...
Microsoft security patch release for CVE-2026-45659
Security Patch Release
H score23
First: 26.05.2026 14:49
Last: 26.05.2026 14:49
Sources 1
About this happening:
Microsoft released SharePoint updates on May 26, 2026 for CVE-2026-45659, a CVSS 8.8 remote code execution flaw caused by deserialization of untrusted data...
Microsoft security patch release for CVE-2026-45659
Security Patch ReleaseAbout this happening: Microsoft released SharePoint updates on May 26, 2026 for CVE-2026-45659, a CVSS 8.8 remote code execution flaw caused by deserialization of untrusted data...
Microsoft security patch release for CVE-2026-41091 and CVE-2026-45498
Security Patch Release
H score44
First: 21.05.2026 10:49
Last: 21.05.2026 10:49
Sources 1
About this happening:
Microsoft rolled out security updates for Defender and related malware protection components to address two zero-days: CVE-2026-41091 and CVE-2026-45498. The fixes cover affected...
Microsoft security patch release for CVE-2026-41091 and CVE-2026-45498
Security Patch ReleaseAbout this happening: Microsoft rolled out security updates for Defender and related malware protection components to address two zero-days: CVE-2026-41091 and CVE-2026-45498. The fixes cover affected...
Latest development: 21.05.2026 12:52
Microsoft released patches for Microsoft Defender Antimalware Platform version 4.18.26040.7 to address CVE-2026-41091, a link-following privilege-escalation flaw that can let an authorized attacker elevate privileges locally to System, and CVE-2026-45498, a denial-of-service flaw. Microsoft said both vulnerabilities were publicly disclosed and exploited in the wild as zero-days. CISA added both flaws to its Known Exploited Vulnerabilities (KEV) list and urged federal agencies to patch them by June 3.
Timeline
-
12.08.2026 00:28 2 articles · 1h ago
Microsoft releases Windows security updates for 398 vulnerabilities
Initial DisclosureMicrosoft released updates for Windows operating systems and supported software, fixing at least 398 security vulnerabilities. The patch set includes CVE-2026-68820, an actively exploited privilege-escalation zero-day in afd.sys, along with CVE-2026-62832, which Microsoft says is likely to be exploited, and CVE-2026-72971, a publicly disclosed low-impact local tampering flaw.
Show sources
- Microsoft Plugs Nearly 400 Security Holes — krebsonsecurity.com — 12.08.2026 00:28
- Microsoft Plugs Nearly 400 Security Holes — krebsonsecurity.com — 12.08.2026 00:28