Articles from July 15, 2026
Browse all Windows news articles published on July 15, 2026
Microsoft Patches NTFS Flaw That Could Allow Code Execution via Malicious Files — All Windows Versions Affected
Microsoft has patched a serious vulnerability in the Windows NTFS file system that could allow attackers to execute arbitrary code after a user opens a specially crafted file. The flaw, tracked as...
Windows LSASS Attack Can Force Server Reboots—July Patch Blocks It
Microsoft’s July 2026 security updates close a network-based denial-of-service vulnerability in the Windows Local Security Authority Subsystem Service (LSASS) that allowed an authenticated attacker...
CVE-2026-49800: Why You Need the July 2026 Windows Updates to Stop a WPAD Attack
On July 14, 2026, Microsoft's monthly security release addressed CVE-2026-49800, a high-severity elevation-of-privilege vulnerability in Windows' Web Proxy Auto-Discovery Protocol (WPAD). Clocking in...
Microsoft Patches Physical RCE in Storage Spaces Direct — What Cluster Administrators Should Know About CVE-2026-50299
Microsoft's July 14, 2026 Patch Tuesday release addresses a physical-vector remote code execution vulnerability in Windows Storage Spaces Direct, a core component of hyperconverged infrastructure....
Patch Now: Microsoft Fixes 9.3-Score Windows Kernel Flaw That Needs No Admin to Exploit
On July 14, 2026, Microsoft pushed out a security fix that every Windows user should install immediately. The star of the July Patch Tuesday lineup is CVE-2026-49798, a use-after-free flaw in the...
CVE-2026-49797: Windows NTFS Patch Fixes Code Execution Flaw, But It’s Not a Network Threat
On July 14, 2026, Microsoft rolled out security updates fixing a heap-based buffer overflow vulnerability in Windows NTFS — the file system that underpins every modern Windows client and server...
Microsoft Ships Fix for Windows Kernel Privilege Escalation That's 'More Likely' to Be Exploited
On July 14, 2026, Microsoft released its monthly Patch Tuesday updates, and one bulletin stands out: CVE-2026-49795, a local elevation-of-privilege bug in the Windows Kernel. The company rates it...
Windows GDI+ Heap Overflow Threatens Millions of PCs – Patch Now, Microsoft Warns
On July 14, 2026, Microsoft’s latest Patch Tuesday release fixed a heap-based buffer overflow in the Windows Graphics Device Interface Plus (GDI+), a core component responsible for rendering images...
A Malicious USB Headset Can Steal Data from Windows PCs — Microsoft’s July Fix Stops the Leak
Microsoft’s July 14, 2026 Patch Tuesday release plugged an information-disclosure hole in the Windows USB Audio Class driver that lets an attacker siphon confidential data from memory using nothing...
CVE-2026-49793: Windows ReFS Heap Overflow Patched—Despite RCE Label, Exploitation Requires Local Access
On July 14, 2026, Microsoft patched CVE-2026-49793, a heap-based buffer overflow in the Windows Resilient File System (ReFS) that earned a CVSS score of 7.8 and the vendor’s “Remote Code...
July Windows Update Seals Off ReFS Attack Route for Hackers: CVE-2026-49792 Explained
Microsoft’s latest batch of security patches, released on July 14, 2026, fixes a flaw in the Windows Resilient File System (ReFS) that could allow an attacker with limited access to a machine to...
Microsoft’s July 2026 Windows Updates Close RRAS Loophole That Could Help Attackers Seize System Control
On July 14, 2026, Microsoft's Patch Tuesday release included a fix for CVE-2026-49791, a local privilege-escalation vulnerability in the Windows Routing and Remote Access Service. An attacker with...