patch tuesday

  1. June 2026 Patch Tuesday: 206 Fixes, 3 Zero-Days in CTFMON, HTTP.sys & BitLocker

    Microsoft released its June 2026 Patch Tuesday updates on June 9, addressing a record 206 reported security flaws across Windows and related products, including three publicly disclosed zero-day vulnerabilities affecting CTFMON, HTTP.sys, and BitLocker that Microsoft says were not known to be...
  2. KB5094126 Low Latency Profile: Windows 11 Snappier Start, Search, and Apps

    Microsoft’s June 9, 2026 cumulative update KB5094126 for Windows 11 versions 24H2 and 25H2 is rolling out through Windows Update with a new Low Latency Profile that briefly raises CPU frequency to make app launches and core shell actions feel faster. The trick is simple enough to sound...
  3. June 2026 Patch Tuesday Checklist: Secure Boot, Encryption, Privacy Hardening

    Microsoft’s June 9, 2026 Patch Tuesday delivered an unusually large Windows security load just weeks before long-lived Secure Boot certificates from 2011 begin expiring in late June, putting Windows 11 users and administrators on notice to review update, privacy, encryption, and hardening...
  4. June 9, 2026 Patch Tuesday: Windows 11/10 Security Update w/ Zero-Days

    Microsoft’s June 9, 2026 Patch Tuesday release delivers cumulative Windows updates for Windows 11 25H2, 24H2, 23H2, and supported Windows 10 ESU/LTSC systems, addressing a record-sized security haul reported at 198 Windows flaws, including three publicly disclosed zero-days. It is the kind of...
  5. June 2026 Patch Tuesday: 200+ Fixes, 3 Zero-Days, and AI-Speed Risk for Windows

    Microsoft’s June 2026 Patch Tuesday landed on June 9 with KB5094126 for Windows 11 and KB5094127 for Windows 10, closing roughly 200 reported vulnerabilities across Windows, Office, Exchange, Azure, Remote Desktop, SharePoint, Hyper-V, Kerberos, and other Microsoft product lines. The important...
  6. June 2026 Patch Tuesday: 208 Vulns, Defender Zero-Day, Windows 11 Feature Updates

    On June 9, 2026, Microsoft released its June Patch Tuesday updates for supported Windows versions and related products, fixing 208 newly disclosed vulnerabilities, including an actively exploited Microsoft Defender privilege-escalation flaw and several critical remote-code-execution bugs across...
  7. June 2026 Patch Tuesday: Record 200 Fixes and the Shift to Continuous Risk Management

    Microsoft’s June 2026 Patch Tuesday, released on June 9, delivered roughly 200 fixes across Windows, Office, Visual Studio Code, Exchange, Azure components, and developer tooling, making it the largest monthly Microsoft security update on record. The size is the story, but not the whole story...
  8. Windows 11 June 2026 Patch Tuesday: Secure Boot, BitLocker, AI & Servicing Updates

    Microsoft released Windows 11 26H1 Build 28000.2269 as KB5095051 and Windows 11 23H2 Build 22631.7219 as KB5093998 on June 9, 2026, delivering June Patch Tuesday security fixes, Secure Boot servicing work, BitLocker reliability changes, File Explorer search fixes, AI component updates, and...
  9. CVE-2026-42991: Windows Push Notifications Local Privilege Escalation (Race Condition)

    CVE-2026-42991 is a Microsoft-confirmed Windows Push Notifications elevation-of-privilege vulnerability disclosed on June 9, 2026, affecting supported Windows client and server releases and allowing a local authenticated attacker to gain higher privileges through a race-condition-style flaw. The...
  10. CVE-2026-42979: Windows Push Notifications Race Condition Privilege Escalation

    Microsoft disclosed CVE-2026-42979 on June 9, 2026, as a high-severity Windows Push Notifications elevation-of-privilege vulnerability affecting Windows 10, Windows 11, Windows Server 2019, Windows Server 2022, and Windows Server 2025. The flaw is described as a local, authenticated attack...
  11. CVE-2026-42977: Windows Push Notifications Local Privilege Escalation Fix

    Microsoft disclosed CVE-2026-42977 on June 9, 2026, as a high-severity Windows Push Notifications elevation-of-privilege vulnerability affecting supported Windows 10, Windows 11, and Windows Server releases, with Microsoft’s advisory describing a local race-condition flaw that requires an...
  12. CVE-2026-42986 Graphics EoP: Patch the Windows Use-After-Free Risk Now

    Microsoft published CVE-2026-42986 on June 9, 2026, as a high-severity Microsoft Graphics Component elevation-of-privilege vulnerability affecting supported Windows client and server releases, describing it as a local use-after-free flaw that requires an authorized attacker to already have low...
  13. CVE-2026-42974 Windows Performance Monitor RCE: Patch June 9 Fast

    CVE-2026-42974 is a high-severity Windows Performance Monitor remote code execution vulnerability published by Microsoft on June 9, 2026, affecting Windows 11, Windows Server 2022, and Windows Server 2025, with public vulnerability trackers listing a CVSS 3.1 score of 8.1. The important point is...
  14. CVE-2026-42981: Windows Performance Monitor RCE (CVSS 8.1) Patch Guidance

    Microsoft disclosed CVE-2026-42981 on June 9, 2026 as a high-severity Windows Performance Monitor remote code execution vulnerability affecting Windows 11, Windows Server 2022, and Windows Server 2025, with public listings assigning it a CVSS 3.1 score of 8.1 and Microsoft as the source. The...
  15. CVE-2026-42984 Windows Kernel EoP: Patch the SYSTEM Use-After-Free Fast

    Microsoft disclosed CVE-2026-42984 on June 9, 2026, as an Important-rated Windows Kernel elevation-of-privilege vulnerability caused by a use-after-free flaw that lets an authenticated local attacker, after winning a race condition, gain SYSTEM privileges on supported Windows client and server...
  16. CVE-2026-42973 Push Notification Info Leak: June 2026 Patch Guidance

    Microsoft listed CVE-2026-42973, a Windows Push Notification information disclosure vulnerability, in its Security Update Guide as part of the June 2026 security-update cycle affecting supported Windows platforms. The flaw is not the sort of bug that earns splashy remote-code-execution...
  17. CVE-2026-42970: Windows Push Notification Info Leak (June 2026 Patch)

    Microsoft disclosed CVE-2026-42970 on June 9, 2026, as a Windows Push Notification information disclosure vulnerability affecting supported Windows client and server releases, with the flaw described as local, authenticated, medium-severity, and rooted in the use of an uninitialized resource...
  18. CVE-2026-42971 Windows Push Notifications: Patch Medium Info Disclosure Risk

    CVE-2026-42971 is a Microsoft-tracked Windows Push Notification information disclosure vulnerability published on June 9, 2026, affecting supported Windows client and server releases, with a medium CVSS 3.1 score of 5.5 and a local, authorized-attacker exploitation profile. That makes it less...
  19. CVE-2026-42969: Windows Push Notifications Local Info Leak—June 2026 Patch

    Microsoft disclosed CVE-2026-42969 on June 9, 2026, as a medium-severity Windows Push Notifications information disclosure vulnerability affecting supported Windows 10, Windows 11, and Windows Server releases, with the flaw described as a local issue requiring an authorized attacker rather than...
  20. CVE-2026-42968: Windows Telephony Service Info Leak—What to Patch Now

    Microsoft released CVE-2026-42968 on June 9, 2026, as an Important Windows Telephony Service information disclosure vulnerability affecting supported Windows client and server releases, with updates available for Windows 10, Windows 11, Windows Server 2012, 2016, 2019, 2022, and 2025. The bug is...