Windows Patching
The latest Windows Patching coverage — news, analysis, and updates from the WindowsNews.AI desk.
Siemens gWAP Patch Urgent: Critical Axios Flaw Allows Remote Code Execution
Siemens and the U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued a joint advisory on May 12, 2026, revealing a critical vulnerability in Siemens gPROMS Web Applications Publisher...
CVE-2026-41089 Netlogon RCE: Patch Domain Controllers Now to Stop Takeover
Microsoft disclosed a critical remote code execution vulnerability in the Windows Netlogon service on May 12, 2026, sending shockwaves through enterprise IT teams. Tracked as CVE-2026-41089, the flaw...
South Staffs Water Slapped with £963,900 Fine for Two-Year Undetected Cl0p Ransomware Breach
The UK’s Information Commissioner’s Office has slapped South Staffordshire Plc—the parent company of South Staffs Water—with a £963,900 fine, capping a year-long investigation into a Cl0p...
Microsoft Edge Now Fixes Chromium Font Bug That Could Leak Your Browser Memory
Microsoft has rolled out a security fix for Microsoft Edge to address a font-handling flaw that could let attackers quietly steal data from your browser just by luring you to a malicious webpage. The...
Chrome 148 Patches a Windows Sandbox Escape—Here’s What You Need to Do Right Now
Microsoft and Google published a joint security advisory on May 6, 2026, for a newly disclosed Chromium vulnerability that can break out of the browser’s sandbox on Windows. Tagged as...
CVE-2026-7935: Chrome UI Spoofing via Speech Component Fixed in Version 148+
Google has patched a medium-severity vulnerability in Chrome's Speech component that could allow attackers to spoof the browser's user interface. The flaw, tracked as CVE-2026-7935, was disclosed on...
Chrome V8 CVE-2026-7940: Patch Now to Block Malicious Extensions
Google and Microsoft jointly disclosed CVE-2026-7940 on May 6, 2026, a medium-severity vulnerability in the V8 JavaScript engine that underpins Chromium-based browsers. The flaw, which affects Google...
Chrome 148 Patches CVE-2026-7945 COOP Flaw Bypassing Site Isolation
Google and Microsoft jointly disclosed CVE-2026-7945 on May 6, 2026, a medium-severity vulnerability in Chromium’s handling of the Cross-Origin-Opener-Policy (COOP) that puts site isolation at...
CVE-2026-7947 Chrome 148 Update: Windows Users Must Patch UI Spoofing Bug Now
Google silently pushed a critical patch to the Chrome stable channel on May 6, 2026, fixing CVE-2026-7947, a medium-severity user interface (UI) spoofing bug in the Chromium Network component. The...
CVE-2026-7972: Chrome GPU Uninitialized Use Vulnerability Fixed – Update on Windows
Google dropped a scheduled security update on May 6, 2026, squashing a medium-severity bug that lurked in Chrome’s GPU process. Cataloged as CVE-2026-7972, the flaw is an uninitialized use...
Chrome 148 and Edge Patch: WebAudio Bug CVE-2026-7980 Earns High Severity Despite Medium Label
Google and Microsoft have patched a use-after-free vulnerability in Chromium’s WebAudio component, tracked as CVE-2026-7980, shipping the fix in Chrome version 148.0.7778.96 and in current...
Update Chrome and Edge Now to Fix CVE-2026-7982 WebCodecs Memory Leak
Google and Microsoft simultaneously disclosed CVE-2026-7982 on May 6, 2026—a medium-severity information disclosure vulnerability rooted in the WebCodecs API of Chromium. Patched in Google Chrome...