Live
Windows FTP Flaw Earns a 9.8 CVSS Score – Microsoft Calls It ‘Important.’ Here’s Your Patch Plan.·MSFT +2.1%July 2026 Windows Update Seals DNS Client Privilege Escalation Hole—Check Your Build Now·NVDA +0.2%Microsoft Patches WalletService Privilege Escalation Flaw (CVE-2026-49176) in July 14 Update·GOOGL +1.7%Microsoft Patches Windows Speech Runtime Flaw That Could Elevate User Privileges·AMZN +1.1%CVE-2026-49170: Windows StateRepository Flaw Could Let Attackers Gain Admin Rights·MSFT +2.1%Microsoft Ships Emergency Fix for Windows Server 2025 DNS Bug, Admins Urged to Patch Now·NVDA +0.2%Storage Spaces Direct Flaw Patched in July 2026 — Why You Can’t Afford to Wait·GOOGL +1.7%Windows 10 and 11 Receive Fix for Kernel Use-After-Free Vulnerability — Here’s How to Deploy It·AMZN +1.1%Windows FTP Flaw Earns a 9.8 CVSS Score – Microsoft Calls It ‘Important.’ Here’s Your Patch Plan.·MSFT +2.1%July 2026 Windows Update Seals DNS Client Privilege Escalation Hole—Check Your Build Now·NVDA +0.2%Microsoft Patches WalletService Privilege Escalation Flaw (CVE-2026-49176) in July 14 Update·GOOGL +1.7%Microsoft Patches Windows Speech Runtime Flaw That Could Elevate User Privileges·AMZN +1.1%CVE-2026-49170: Windows StateRepository Flaw Could Let Attackers Gain Admin Rights·MSFT +2.1%Microsoft Ships Emergency Fix for Windows Server 2025 DNS Bug, Admins Urged to Patch Now·NVDA +0.2%Storage Spaces Direct Flaw Patched in July 2026 — Why You Can’t Afford to Wait·GOOGL +1.7%Windows 10 and 11 Receive Fix for Kernel Use-After-Free Vulnerability — Here’s How to Deploy It·AMZN +1.1%

Security Alerts

The latest Security Alerts coverage — news, analysis, and updates from the WindowsNews.AI desk.

12 stories in view AI assisted desk updated 2:48 PM
Latest Most Read Breaking
Sort
Cve 2026 49172 · Ftp Vulnerability

Windows FTP Flaw Earns a 9.8 CVSS Score – Microsoft Calls It ‘Important.’ Here’s Your Patch Plan.

On July 14, 2026, Microsoft patched a vulnerability in the Windows FTP Service that could allow an attacker to remotely execute code on a server with no authentication. The flaw, dubbed...

Advertisement
Cve-2026-49170 · Patch Tuesday

CVE-2026-49170: Windows StateRepository Flaw Could Let Attackers Gain Admin Rights

Microsoft’s July 2026 Patch Tuesday release fixes a local privilege escalation vulnerability in the Windows StateRepository API that affects all supported versions of Windows and Windows Server....

SE Security Desk·1w ago
Cve Vulnerabilities · Dns Security

Microsoft Ships Emergency Fix for Windows Server 2025 DNS Bug, Admins Urged to Patch Now

Microsoft released a security update on July 14, 2026, that patches a remote code execution vulnerability in the Windows DNS Server service. The flaw, tracked as CVE-2026-49169, affects all editions...

SE Security Desk·1w ago
Elevation Of Privilege · Patch Tuesday

Storage Spaces Direct Flaw Patched in July 2026 — Why You Can’t Afford to Wait

Microsoft’s July 14, 2026 Patch Tuesday fixes a privilege-escalation vulnerability in Windows Storage Spaces Direct that could let attackers with limited access seize greater control over clustered...

SE Security Desk·1w ago
Kernel Vulnerabilities · Patch Tuesday

Windows 10 and 11 Receive Fix for Kernel Use-After-Free Vulnerability — Here’s How to Deploy It

Microsoft released its July 2026 Patch Tuesday updates on July 14, addressing a Windows kernel elevation-of-privilege vulnerability that could give attackers system-level control after they already...

SE Security Desk·1w ago
Cve Vulnerability · Patch Tuesday

Microsoft’s July Windows 11 Security Update Kills a Printer Driver Bug That Can Give Attackers Admin Rights

Microsoft rolled out its July 2026 Patch Tuesday fixes on July 14, and among the scores of vulnerabilities addressed is a particularly nasty printer driver flaw in Windows 11 that could let an...

SE Security Desk·1w ago
Cve 2026 49165 · Information Disclosure

CVE-2026-49165: Why Server Core Machines Need This ‘Windows App Store’ Patch

A security vulnerability disclosed on July 14, 2026, carries the innocuous label “Windows App Store,” but its reach extends far beyond the consumer-facing shopping application. CVE-2026-49165...

SE Security Desk·1w ago
Active Directory · Domain Controllers

Microsoft Drops Critical Active Directory Patch — Here’s How to Deploy It Fast and Safely

Microsoft pushed out a critical fix for Windows Active Directory Domain Services on July 14, targeting a remote code execution vulnerability that could hand an attacker the keys to your entire...

SE Security Desk·1w ago
Cisa Alert · Cybersecurity

CISA: Active SharePoint Attacks Exploit Three Flaws — Patch Now and Hunt for Breaches

On July 14, 2026, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued an urgent alert: three vulnerabilities in on-premises Microsoft SharePoint Server are being actively...

SE Security Desk·1w ago