Patch Tuesday 2026
The latest Patch Tuesday 2026 coverage — news, analysis, and updates from the WindowsNews.AI desk.
Patch Now: CVE-2026-42986 Graphics Bug Lets Local Users Reach SYSTEM.
Microsoft released CVE-2026-42986 as part of its June 2026 Patch Tuesday updates, addressing a high-severity elevation of privilege vulnerability in the Windows Graphics Component. The flaw,...
CVE-2026-42974: Windows Performance Monitor Remote Code Execution Flaw Patched on June 9
Microsoft’s June 2026 Patch Tuesday landed on June 9 with a fix for CVE-2026-42974, a high-severity remote code execution vulnerability in Windows Performance Monitor. The flaw carries a CVSS score...
CVE-2026-42981: Microsoft Patches Windows Performance Monitor RCE Vulnerability (CVSS 8.1) in June 2026 Patch Tuesday
Microsoft's June 9, 2026 Patch Tuesday dropped a high-severity bulletin for CVE-2026-42981, a remote code execution (RCE) flaw in Windows Performance Monitor rated at CVSS 8.1. The vulnerability...
Microsoft Patch Tuesday Fixes Windows Kernel Zero-Day Use-After-Free EoP Bug
Microsoft’s June 2026 Patch Tuesday landed with a critical fix for CVE-2026-42984, an Important-rated use-after-free vulnerability in the Windows kernel that enables a local attacker to escalate to...
CVE-2026-42973: Windows Push Notification Info Leak Patched in June 2026 Update
Microsoft has addressed a security flaw in Windows Push Notifications that could allow attackers to silently extract sensitive information from compromised systems. The vulnerability, tracked as...
Patch Now: Windows Push Notification Leaks Sensitive Data via CVE-2026-42970
Microsoft's June 2026 Patch Tuesday arrived on June 9, bringing a critical fix for CVE-2026-42970, an information disclosure vulnerability in the Windows Push Notification service. The flaw, now...
Windows Push Notification Flaw CVE-2026-42971 Exposes Sensitive Data, Patch Now
Microsoft addressed an information disclosure vulnerability in the Windows Push Notification service with the release of its June 2026 security updates. Tracked as CVE-2026-42971, the flaw could...
CVE-2026-42969 Windows Push Notification info leak patched in June 2026 update
Microsoft’s June 2026 Patch Tuesday landed on June 9 with fixes for 49 unique CVEs, but one medium-severity vulnerability in particular slipped quietly into the advisory: CVE-2026-42969. It’s an...
Patch Windows Now: CVE-2026-42968 Telephony Service Leaks Credentials
Microsoft released a security update on June 9, 2026 to address CVE-2026-42968, an information disclosure vulnerability in the Windows Telephony Service rated as Important. The patch arrives as part...
CVE-2026-42915: Microsoft Patches Medium-Severity Windows TCP/IP DoS Vulnerability
Microsoft’s June 2026 Patch Tuesday landed on June 9 with a fresh batch of security fixes, headlined by a newly disclosed denial-of-service flaw in the Windows TCP/IP stack. Tracked as...
Patch Microsoft’s Critical Kerberos DoS CVE-2026-42914 on Domain Controllers
Microsoft’s June 2026 Patch Tuesday landed on June 9 with a particularly disruptive vulnerability in its belt. CVE-2026-42914, an Important-rated Windows Kerberos denial-of-service flaw, threatens...
CVE-2026-42913: High-Severity RDP Client RCE Flaw Hits Windows 11 and Server — What You Must Do Now
Microsoft on June 9, 2026, disclosed CVE-2026-42913, a critical remote code execution vulnerability in the Remote Desktop Protocol (RDP) client, affecting Windows 11, Windows Server 2022, and Windows...