Live
CVE-2026-11029: Critical Chrome Android Drag-and-Drop Vulnerability Allows Sandbox Escape·MSFT +2.1%Chrome for Android CVE-2026-11012: CPE Scanner Blind Spots Expose Fleets·NVDA +0.2%CVE-2026-45600: Microsoft Patches Important Windows Kernel Privilege Escalation Flaw in June 2026 Patch Tuesday·GOOGL +1.7%CVE-2026-47631 Exchange Spoofing: Act Now Despite Sparse Patch Details·AMZN +1.1%Patch CVE-2026-45596 now: Windows AFD bug grants SYSTEM access to all users·MSFT +2.1%Apply Microsoft’s Emergency Exchange Patch Now to Block CVE-2026-45583 Attacks·NVDA +0.2%CVE-2026-45636: Patch Windows NTFS VHD Flaw Now Despite Misleading "Remote" Label·GOOGL +1.7%CVE-2026-45504: Apply June Exchange Patch Now to Block Privilege Escalation·AMZN +1.1%CVE-2026-11029: Critical Chrome Android Drag-and-Drop Vulnerability Allows Sandbox Escape·MSFT +2.1%Chrome for Android CVE-2026-11012: CPE Scanner Blind Spots Expose Fleets·NVDA +0.2%CVE-2026-45600: Microsoft Patches Important Windows Kernel Privilege Escalation Flaw in June 2026 Patch Tuesday·GOOGL +1.7%CVE-2026-47631 Exchange Spoofing: Act Now Despite Sparse Patch Details·AMZN +1.1%Patch CVE-2026-45596 now: Windows AFD bug grants SYSTEM access to all users·MSFT +2.1%Apply Microsoft’s Emergency Exchange Patch Now to Block CVE-2026-45583 Attacks·NVDA +0.2%CVE-2026-45636: Patch Windows NTFS VHD Flaw Now Despite Misleading "Remote" Label·GOOGL +1.7%CVE-2026-45504: Apply June Exchange Patch Now to Block Privilege Escalation·AMZN +1.1%

Security Alerts

The latest Security Alerts coverage — news, analysis, and updates from the WindowsNews.AI desk.

12 stories in view AI assisted desk updated 9:49 AM
Latest Most Read Breaking
Sort
Browser Sandbox Escape · Chrome Android Security

CVE-2026-11029: Critical Chrome Android Drag-and-Drop Vulnerability Allows Sandbox Escape

Google has patched a high-severity security flaw in Chrome for Android that could have allowed attackers to escape the browser's sandbox through a deceptive drag-and-drop interaction. Tracked as...

Advertisement
Afd Afd.sys · Cve-2026-45596

Patch CVE-2026-45596 now: Windows AFD bug grants SYSTEM access to all users

Microsoft kicked off its June 2026 Patch Tuesday with a critical fix for CVE-2026-45596, a local elevation of privilege vulnerability lurking in the Windows Ancillary Function Driver for WinSock,...

SE Security Desk·7w ago
Cve-2026-45583 · Microsoft Exchange

Apply Microsoft’s Emergency Exchange Patch Now to Block CVE-2026-45583 Attacks

Microsoft Exchange administrators face yet another critical patching fire drill with the release of CVE-2026-45583, a remote code execution vulnerability that puts on-premises mail servers at...

SE Security Desk·7w ago
Cve-2026-45636 · June 2026 Patch

CVE-2026-45636: Patch Windows NTFS VHD Flaw Now Despite Misleading "Remote" Label

Microsoft dropped its June 2026 Patch Tuesday update, and among the fixes is CVE-2026-45636, a vulnerability that underscores why security classifications can be misleading. The flaw, rated...

SE Security Desk·7w ago
Cve 2026-45504 · Elevation Of Privilege

CVE-2026-45504: Apply June Exchange Patch Now to Block Privilege Escalation

Microsoft disclosed CVE-2026-45504—an elevation-of-privilege vulnerability in Microsoft Exchange Server—as part of its June 9, 2026 Patch Tuesday release. The vulnerability carries an Important...

SE Security Desk·7w ago
Cve 2026 · Information Disclosure

CVE-2026-45503 Exchange Info Disclosure: Patch Immediately to Protect Sensitive Data

Microsoft has published a critical security advisory for CVE-2026-45503, an information disclosure vulnerability affecting on-premises Exchange Server deployments. The advisory, available through the...

SE Security Desk·7w ago
Afd.sys · Cve-2026-45598

Patch Now: Critical CVE-2026-45598 AFD.sys Bug Gives Hackers SYSTEM Access

Microsoft's June 2026 Patch Tuesday has arrived with a crucial fix for CVE-2026-45598, an Important-rated elevation-of-privilege vulnerability residing in the Windows Ancillary Function Driver for...

SE Security Desk·7w ago
Cve 2026 · Information Disclosure

CVE-2026-45502: Why Microsoft's 'Confirmed' Report Confidence Raises the Stakes for Exchange Server Admins

Microsoft published CVE-2026-45502 on June 9, 2026, marking it as a critical information disclosure vulnerability in Microsoft Exchange Server. The advisory, posted in the Microsoft Security Response...

SE Security Desk·7w ago
Cve-2026-45601 · Privilege Escalation

Microsoft Urges Patching of CVE-2026-45601: WinSock AFD Driver Exploit Leads to SYSTEM Access

Microsoft’s June 2026 Patch Tuesday closed a dangerous elevation-of-privilege hole in the Windows Ancillary Function Driver for WinSock (AFD). Tracked as CVE-2026-45601, the flaw grants a locally...

SE Security Desk·7w ago