{"id":12805,"date":"2026-05-13T04:03:35","date_gmt":"2026-05-13T04:03:35","guid":{"rendered":"https:\/\/serisec.com\/index.php\/2026\/05\/13\/32980\/"},"modified":"2026-05-13T04:03:35","modified_gmt":"2026-05-13T04:03:35","slug":"32980","status":"publish","type":"post","link":"https:\/\/serisec.com\/index.php\/2026\/05\/13\/32980\/","title":{"rendered":"Microsoft May 2026 Patch Tuesday, (Tue, May 12th)"},"content":{"rendered":"<p>    Microsoft May 2026 Patch Tuesday, (Tue, May 12th)<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n    <!-- no image --><br \/>\n \t<BR><br \/>\n<BR><\/BR><\/p>\n<div>\n<p>Today&#8217;s Microsoft patch Tuesday fixes 137 different vulnerabilities. In addition, the update addresses 137 Chromium-related issues affecting Microsoft Edge.<\/p>\n<p>There are no already disclosed or already exploited vulnerabilities included in today&#8217;s patches. I removed the Chromium issues from the table below and\u00a0included only the 137 Microsoft issues to make it more readable.<\/p>\n<p>Note that issues related to Microsoft Azure are labeled as &#8220;no customer action required.\u00a0<\/p>\n<p>Significant Vulnerabilities of interest:<\/p>\n<p>CVE-2026-41103: This vulnerability affects the\u00a0Microsoft SSO Plugin for Jira &amp; Confluence. Exploitation could lead to an elevation of privileges. With ongoing supply chain attacks, development and CI\/CD tools like Jira and Confluence are popular targets.\u00a0<\/p>\n<p>CVE-2026-41089: A preauthentication remote code execution vulnerability in the Netlogon service will always be a juicy target, worth some AI tokens to write an exploit for.<\/p>\n<p>Other critical vulnerabilities include the usual Word and Microsoft Office issues.<\/p>\n<table class=\"msfttable\">\n<thead class=\"msftthead\">\n<tr>\n<th colspan=\"8\">Description<\/th>\n<\/tr>\n<tr>\n<th>CVE<\/th>\n<th>Disclosed<\/th>\n<th>Exploited<\/th>\n<th>Exploitability (old versions)<\/th>\n<th>current version<\/th>\n<th>Severity<\/th>\n<th>CVSS Base (AVG)<\/th>\n<th>CVSS Temporal (AVG)<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td colspan=\"8\">.NET Core Tampering Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-32175%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>4.3<\/td>\n<td>3.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">.NET Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-32177%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.3<\/td>\n<td>6.4<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35433%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.3<\/td>\n<td>6.4<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">ASP.NET Core Denial of Service Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-42899%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.5<\/td>\n<td>6.5<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Azure AI Foundry Elevation of Privilege Vulnerability<br \/>\n\t\t\t(no customer action required)<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35435%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>8.6<\/td>\n<td>7.5<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Azure Cloud Shell Spoofing Vulnerability<br \/>\n\t\t\t(no customer action required)<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35428%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>9.6<\/td>\n<td>8.3<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Azure Connected Machine Agent Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40381%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Azure DevOps Information Disclosure Vulnerability<br \/>\n\t\t\t(no customer action required)<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-42826%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>10.0<\/td>\n<td>8.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Azure Logic Apps Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-42823%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>9.9<\/td>\n<td>8.6<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Azure Machine Learning Notebook Spoofing Vulnerability<br \/>\n\t\t\t(no customer action required)<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-32207%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33833%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.2<\/td>\n<td>7.1<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Azure Managed Instance for Apache Cassandra Remote Code Execution Vulnerability<br \/>\n\t\t\t(no customer action required)<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33109%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>9.9<\/td>\n<td>8.6<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33844%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>9.0<\/td>\n<td>7.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Azure Monitor Action Group Notification System Elevation of Privilege Vulnerability<br \/>\n\t\t\t(no customer action required)<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41105%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>8.1<\/td>\n<td>7.1<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Azure Monitor Agent Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-32204%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Azure Monitor Agent Metrics Extension Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-42830%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>6.5<\/td>\n<td>5.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Azure SDK for Java Security Feature Bypass Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33117%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>9.1<\/td>\n<td>7.9<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Copilot Chat (Microsoft Edge) Information Disclosure Vulnerability<br \/>\n\t\t\t(no customer action required)<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33111%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>7.5<\/td>\n<td>6.5<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Data Deduplication Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41095%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">GitHub Copilot and Visual Studio Code Security Feature Bypass Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41109%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35424%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.5<\/td>\n<td>6.5<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">M365 Copilot Information Disclosure Vulnerability<br \/>\n\t\t\t(no customer action required)<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-26129%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>7.5<\/td>\n<td>6.5<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-26164%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>7.5<\/td>\n<td>6.5<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">M365 Copilot for Desktop Spoofing Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41614%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>6.2<\/td>\n<td>5.4<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft 365 Copilot for Android Spoofing Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41100%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>4.4<\/td>\n<td>3.9<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Cryptographic Services Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40377%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Data Formulator Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41094%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40417%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Dynamics 365 Customer Insights Elevation of Privilege Vulnerability<br \/>\n\t\t\t(no customer action required)<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33821%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>7.7<\/td>\n<td>6.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-42898%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>9.9<\/td>\n<td>8.6<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-42833%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>9.1<\/td>\n<td>7.9<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-42838%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>5.4<\/td>\n<td>4.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Edge (Chromium-based) Information Disclosure Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41107%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftmoderate\">Moderate<\/td>\n<td>7.4<\/td>\n<td>6.4<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-42891%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftmoderate\">Moderate<\/td>\n<td>6.5<\/td>\n<td>5.7<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35429%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftmoderate\">Moderate<\/td>\n<td>4.3<\/td>\n<td>3.9<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40416%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftlow\">Low<\/td>\n<td>4.3<\/td>\n<td>3.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Enterprise Security Token Service (ESTS) Spoofing Vulnerability<br \/>\n\t\t\t(no customer action required)<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40379%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>9.3<\/td>\n<td>8.1<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Excel Information Disclosure Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40360%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Excel Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40359%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40362%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34329%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Office Click-To-Run Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40419%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40418%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35436%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40420%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Office Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40363%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>8.4<\/td>\n<td>7.3<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-42831%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40358%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>8.4<\/td>\n<td>7.3<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Office Spoofing Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-42832%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.7<\/td>\n<td>6.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Outlook for iOS Tampering Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-42893%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.4<\/td>\n<td>6.4<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Partner Center Spoofing Vulnerability<br \/>\n\t\t\t(no customer action required)<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34327%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>8.2<\/td>\n<td>7.1<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Power Automate Desktop Information Disclosure Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40374%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>6.5<\/td>\n<td>5.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft PowerPoint for Android Spoofing Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41102%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.1<\/td>\n<td>6.2<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft SSO Plugin for Jira &amp; Confluence Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41103%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>9.1<\/td>\n<td>7.9<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft SharePoint Server Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35439%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40368%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.0<\/td>\n<td>7.0<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33110%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33112%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40357%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40365%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Team Events Portal Information Disclosure Vulnerability<br \/>\n\t\t\t(no customer action required)<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33823%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>9.6<\/td>\n<td>8.3<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Teams Spoofing Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-32185%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>5.5<\/td>\n<td>4.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Word Information Disclosure Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35440%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>5.5<\/td>\n<td>4.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40421%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>4.3<\/td>\n<td>3.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Word Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40364%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>8.4<\/td>\n<td>7.3<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40366%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>8.4<\/td>\n<td>7.3<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40361%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>8.4<\/td>\n<td>7.3<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40367%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>8.4<\/td>\n<td>7.3<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Microsoft Word for Android Spoofing Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41101%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.1<\/td>\n<td>6.2<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">SQL Server Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40370%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Secure Boot Security Feature Bypass Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41097%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>6.7<\/td>\n<td>5.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Visual Studio Code Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41613%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Visual Studio Code Information Disclosure Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41612%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>5.5<\/td>\n<td>4.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Visual Studio Code Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41611%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Visual Studio Code Security Feature Bypass Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41610%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>6.3<\/td>\n<td>5.5<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Win32k Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33839%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.0<\/td>\n<td>6.1<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33840%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34330%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34331%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.0<\/td>\n<td>6.1<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows 11 Telnet Client Information Disclosure Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35423%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>5.4<\/td>\n<td>4.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Admin Center Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35438%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.3<\/td>\n<td>7.2<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Admin Center in Azure Portal Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41086%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34344%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34345%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.0<\/td>\n<td>6.1<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35416%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.0<\/td>\n<td>6.1<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41088%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Application Identity (AppID) Subsystem Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34343%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35418%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33835%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34337%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Common Log File System Driver Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40407%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40397%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows DNS Client Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41096%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>9.8<\/td>\n<td>8.5<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows DWM Core Library Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-42896%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows DWM Core Library Information Disclosure Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35419%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>5.5<\/td>\n<td>4.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34336%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Event Logging Service Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33834%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Filtering Platform (WFP) Security Feature Bypass Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-32209%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>4.4<\/td>\n<td>3.9<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows GDI Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35421%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Graphics Component Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40403%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>8.8<\/td>\n<td>7.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Hyper-V Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40402%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>9.3<\/td>\n<td>8.1<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Kernel Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33841%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35420%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40369%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Kernel-Mode Driver Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34332%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.0<\/td>\n<td>7.0<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34339%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>5.5<\/td>\n<td>4.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Link-Layer Discovery Protocol (LLDP) Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34341%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.0<\/td>\n<td>6.1<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Message Queuing (MSMQ) Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33838%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Native WiFi Miniport Driver Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-32161%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>7.5<\/td>\n<td>6.5<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Netlogon Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-41089%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftcritical\">Critical<\/td>\n<td>9.8<\/td>\n<td>8.5<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Print Spooler Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34342%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.0<\/td>\n<td>6.1<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Projected File System Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34340%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.0<\/td>\n<td>6.1<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Remote Desktop Services Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40398%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Rich Text Edit Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-21530%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>6.7<\/td>\n<td>5.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-32170%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>6.7<\/td>\n<td>5.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows SMB Client Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40410%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.0<\/td>\n<td>6.1<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Storage Spaces Controller Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35415%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Storport Miniport Driver Denial of Service Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34350%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>6.5<\/td>\n<td>5.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows TCP\/IP Denial of Service Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40405%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.5<\/td>\n<td>6.5<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40414%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.4<\/td>\n<td>6.4<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40401%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.1<\/td>\n<td>6.2<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40413%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.4<\/td>\n<td>6.4<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows TCP\/IP Driver Security Feature Bypass Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35422%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>6.5<\/td>\n<td>5.7<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows TCP\/IP Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34351%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40399%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34334%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows TCP\/IP Information Disclosure Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40406%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.5<\/td>\n<td>6.5<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows TCP\/IP Local Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-33837%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows TCP\/IP Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40415%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>8.1<\/td>\n<td>7.1<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Telephony Service Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-42825%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.0<\/td>\n<td>6.1<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34338%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40382%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Volume Manager Extension Driver Remote Code Execution Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40380%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>6.2<\/td>\n<td>5.4<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows WAN ARP Driver Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-40408%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td colspan=\"8\">Windows Win32k Elevation of Privilege Vulnerability<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34333%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-34347%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.0<\/td>\n<td>6.1<\/td>\n<\/tr>\n<tr>\n<td>%%cve:2026-35417%%<\/td>\n<td class=\"msftno\">No<\/td>\n<td class=\"msftno\">No<\/td>\n<td>&#8211;<\/td>\n<td>&#8211;<\/td>\n<td class=\"msftimportant\">Important<\/td>\n<td>7.8<\/td>\n<td>6.8<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>&#8212;<br \/>\nJohannes B. Ullrich, Ph.D. , Dean of Research, <a href=\"https:\/\/sans.edu\/\">SANS.edu<\/a><br \/>\n<a href=\"https:\/\/jbu.me\/164\">Twitter<\/a>|<\/p>\n<p> (c) SANS Internet Storm Center. https:\/\/isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.<\/p><\/div>\n<p> \t<BR><br \/>\n <BR><\/BR><\/p>\n<p> \t<BR><br \/>\n<BR><\/BR><br \/>\n<a href=\"https:\/\/isc.sans.edu\/diary\/rss\/32980\">Go to isc.sans.edu<\/a><br \/>\n \t<BR><br \/>\n <BR><\/BR><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Microsoft May 2026 Patch Tuesday, (Tue, May 12th) Today&#8217;s Microsoft patch Tuesday fixes 137 different vulnerabilities. In addition, the update addresses 137 Chromium-related issues affecting Microsoft Edge. There are no already disclosed or already exploited vulnerabilities included in today&#8217;s patches. I removed the Chromium issues from the table below and\u00a0included only the 137 Microsoft issues [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[56],"tags":[69],"class_list":["post-12805","post","type-post","status-publish","format-standard","hentry","category-isc-sans-edu","tag-isc-sans-edu"],"_links":{"self":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/12805"}],"collection":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/comments?post=12805"}],"version-history":[{"count":0,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/12805\/revisions"}],"wp:attachment":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/media?parent=12805"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/categories?post=12805"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/tags?post=12805"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}