Microsoft Security Center Center News

Subscribe to Microsoft Security Center Center News feed
Updated: 26 min 38 sec ago

CVE-2026-44808 Windows DWM Core Library Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-44807 Windows DWM Core Library Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-44799 Remote Desktop Client Remote Code Execution Vulnerability

Tue, 06/09/2026 - 14:00
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-44815 DHCP Client Service Remote Code Execution Vulnerability

Tue, 06/09/2026 - 14:00
Stack-based buffer overflow in Windows DHCP Client allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-42983 Windows DWM Core Library Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-44802 Windows DWM Core Library Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-44814 Windows DWM Core Library Information Disclosure Vulnerability

Tue, 06/09/2026 - 14:00
Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-44801 Remote Desktop Client Remote Code Execution Vulnerability

Tue, 06/09/2026 - 14:00
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-42985 Remote Desktop Client Remote Code Execution Vulnerability

Tue, 06/09/2026 - 14:00
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-42987 Windows Deployment Services (WDS) Remote Code Execution

Tue, 06/09/2026 - 14:00
Use after free in Windows Deployment Services allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-44803 Windows Graphics Component Remote Code Execution Vulnerability

Tue, 06/09/2026 - 14:00
Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally.
Categories: Microsoft

CVE-2026-44812 Windows Graphics Component Remote Code Execution Vulnerability

Tue, 06/09/2026 - 14:00
Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally.
Categories: Microsoft

CVE-2026-42993 Remote Desktop Client Remote Code Execution Vulnerability

Tue, 06/09/2026 - 14:00
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-44813 Windows DWM Core Library Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-44804 Windows DWM Core Library Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-42897 Microsoft Exchange Server Spoofing Vulnerability

Tue, 06/09/2026 - 14:00
Added links to June 2026 Exchange Server security updates. Microsoft recommends installing this updates as soon as possible.
Categories: Microsoft

CVE-2026-41100 Microsoft 365 Copilot for Android Spoofing Vulnerability

Tue, 06/09/2026 - 14:00
Added Microsoft Excel for Android, Microsoft Word for Android, Microsoft Loop for Android, Microsoft PowerPoint for Android and Microsoft OneNote for Android softwares to the Security Updates table. Customers that are running supported version of these products are encouraged to update to the indicated versions to be protected from this vulnerability.
Categories: Microsoft

CVE-2026-21530 Windows Rich Text Edit Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Added Office softwares to the Security Updates table. Customers that are running supported versions of Office are encouraged to update to the indicated versions to be protected from this vulnerability.
Categories: Microsoft

CVE-2024-49075 Windows Remote Desktop Services Denial of Service Vulnerability

Tue, 06/09/2026 - 14:00
To comprehensively address this vulnerability Windows 11 Version 26H1 for ARM64-based Systems and Windows 11 Version 26H1 for64-based Systems have been added to the Security Updates table. Microsoft recommend updating to the June 2026 version of your Windows operating systems.
Categories: Microsoft

CVE-2024-49123 Windows Remote Desktop Services Remote Code Execution Vulnerability

Tue, 06/09/2026 - 14:00
To comprehensively address this vulnerability Windows 11 Version 26H1 for ARM64-based Systems and Windows 11 Version 26H1 for64-based Systems have been added to the Security Updates table. Microsoft recommend updating to the June 2026 version of your Windows operating systems.
Categories: Microsoft

Pages