🕵️ Hacking 🕛 vor 2 Monaten 55 Min Lesezeit CVE-2026-26145
0

The July 2026 Security Update Review

Cyber Threat & Vulnerability Dossier
ANGRIPPSVEKTOR
💻 Lokal
AUTHENTIFIZIERUNG
🔑 Geringe Nutzerrechte nötig
SCHADENSPROFIL
⛔ Dienstausfall (DoS) / Full Compromise
CWE-KLASSIFIZIERUNG
CWE-119: Memory Corruption
Handlungsempfehlung: Patch-Tuesday Update einspielen oder betroffene Dienste in Windows Defender isolieren.
Im CVE-Radar öffnen
↗ Quelle (thezdi.com)
🔬 IoC Intelligence (621 Indikatoren erkannt)
CVE-2026-56155CVE-2026-56164CVE-2026-57092CVE-2026-50522CVE-2026-56190CVE-2026-55008CVE-2026-50518CVE-2026-56188+613 weitere
🗣️ Stimme:

Well folks. Here we are. The bug apocalypse has fully descended upon us. I’ll do my best to sort this out in some way meaningful, but this month’s release shows us the nay-sayers were right, and I’ve got to hand it to the nay-sayers here. Excellent call. Take an extended break from your regularly scheduled activities as we let’s take a look at the latest security patches from Adobe and Microsoft. If you’d rather watch the full video recap covering the entire release, you can check it out here:



































































Adobe Patches for July 2026

Adobe has now moved to a bimonthly release schedule, which means they will be releasing patches on the second and fourth Tuesdays of the month. I’ll continue to cover the second Tuesday release here and update this blog should the fourth Tuesday release contain anything significant. I think this is a smart way to break up a monster release into something a bit more manageable. Apple has said they are taking a similar approach. We’ll see if other vendors follow their lead.

For the first part of the July release, Adobe released 12 bulletins addressing 88 unique CVEs in Adobe ColdFusion, Commerce, After Effects, Animate, Audition, Bridge, Creative Cloud Desktop Application, Experience Manager, Illustrator, Media Encoder, Premiere Pro, and the Content Credentials SDK.

Here’s this month’s overview table:




























































































































Bulletin ID Product CVE Count Highest Severity Highest CVSS Exploited Deployment Priority
Adobe Commerce 13 Critical 9.6 No 2
Adobe Animate 6 Critical 8.6 No 3
Adobe Bridge 6 Critical 7.8 No 3
Adobe Experience Manager 13 Critical 9.6 No 3
Adobe Media Encoder 5 Critical 7.8 No 3
Content Credentials SDK 12 Critical 8.2 No 3
TOTAL 12 bulletins 88















While nothing is under active exploit, I would prioritize the Cold Fusion and Commerce patches first. The patch for Cold Fusion even clocks in with a CVSS 9.9 bug. Beyond that, most of these updates are pretty straightforward. If you’re using these products, patch them. However, you can use you regular patch cadence here.

Microsoft Patches for July 2026

Here it is. The Mother of All Releases. To call this record-breaking is an understatement. How to count this mess is anyone’s guess, but I see new Microsoft 621 CVEs for the month of July. Some of these are in online services where no user action is required. They also list about 480 bugs in Chromium and Microsoft Edge (Chromium-based) that I won’t cover here. Here’s how I put this in context. I looked at the last 20 years of Microsoft releases. The CVE count year-to-date exceeds all other years’ totals.



























































































































The products covered this month are also astonishing. There are patches for Windows and Windows components, Office and Office Components, Microsoft Edge (Chromium-based), Azure, .NET and Visual Studio, Github Copilot, Defender, Exchange Server, Hyper-V, Ages of Empire II, and Minecraft Server (really!). That phrase “Windows components” does some pretty heavy lifting here, too, as just about everything you’ve ever heard of is getting patched. All told, there are 63 rated Critical, six rated Moderate, one rated Low, with the rest rated Important in severity. Eight of these bugs were submitted through the ZDI program (more on that later). Two CVEs are listed as under active exploit while one other is listed as publicly known.

So how do we eat this elephant? One byte at a time (pun intended). Let’s start by looking a closer look at some of the more interesting updates for this month, starting with the bugs being exploited in the wild.

-    - Microsoft SharePoint Server Elevation of Privilege Vulnerability
The other bug being exploited in the wild this month is a modest CVSS 5.3 – but it shows why Moderate severity bugs still matter. It's a missing-authentication flaw, meaning an unauthenticated attacker can hit it over the network with no user interaction required. When something this reachable is being actively abused, patch it now and worry about the score later.

-    /, so it’s odd to see Microsoft list it as “Exploit Maturity Unknown” since we literally handed them a working exploit. Just another reason to do your own risk assessment and not rely 100% on the vendor. If you have any Internet accessible SharePoint servers, test and deploy this patch quickly.

-     - Microsoft Exchange Server Spoofing Vulnerability
Ignore the title here and treat this like the XSS bug it is. The vulnerability is listed as a CVSS 9.6 since it’s a stored cross-site scripting flaw in Outlook Web Access, with a scope-changed impact that lets it break out of the web app context entirely. An attacker sends a specially crafted email, and if the victim simply opens it in OWA, arbitrary JavaScript executes in their browser session — no attachment needed, no macro warning, just viewing the message does it. If you’re using OWA, test and deploy this one quickly.

-    - Windows Server Network driver Remote Code Execution Vulnerability
Another Critical-rated bug, this one is caused by a race condition. It’s always fun to see a TOCTOU bug rated this high, since race conditions are notoriously finicky to exploit reliably. While it may prove tricky to exploit, this bug could allow an attacker to execute privileged code over the network without user interaction. Don’t let the race condition lull you to sleep on a wormable bug.

-    
Active Directory
Federation Services Elevation of Privilege Vulnerability
Important
7.8
No
Yes
EoP



Windows BitLocker
Security Feature Bypass Vulnerability
Important
6.1
Yes
No
SFB



Azure OpenAI Elevation
of Privilege Vulnerability
Critical
9.9
No
No
EoP



DHCP Server Service
Remote Code Execution Vulnerability
Critical
8.8
No
No
RCE



DirectX Graphics
Kernel Remote Code Execution Vulnerability
Critical
8.8
No
No
RCE



Microsoft Azure
Synapse Elevation of Privilege Vulnerability
Critical
4.8
No
No
EoP



Microsoft Defender
Remote Code Execution Vulnerability
Critical
7.8
No
No
RCE



Microsoft Dynamics NAV
and Microsoft Dynamics 365 Business Central (On Premises) Remote Code
Execution Vulnerability
Critical
9.8
No
No
RCE



Microsoft Excel Remote
Code Execution Vulnerability
Critical
7.8
No
No
RCE



Microsoft Exchange
Server Spoofing Vulnerability
Critical
9.6
No
No
Spoofing



Microsoft Office
Remote Code Execution Vulnerability
Critical
7.8
No
No
RCE



Microsoft Office
Remote Code Execution Vulnerability
Critical
7.8
No
No
RCE



Microsoft Office
Remote Code Execution Vulnerability
Critical
8.4
No
No
RCE



Microsoft Office
Remote Code Execution Vulnerability
Critical
7.8
No
No
RCE



Microsoft Office
Remote Code Execution Vulnerability
Critical
7.8
No
No
RCE



Microsoft PowerPoint
Remote Code Execution Vulnerability
Critical
7.8
No
No
RCE



Microsoft SharePoint
Remote Code Execution Vulnerability
Critical
9.8
No
No
RCE



Microsoft SharePoint
Server Security Feature Bypass Vulnerability
Critical
9.1
No
No
SFB



Microsoft SQL Server
Remote Code Execution Vulnerability
Critical
8.8
No
No
RCE



Microsoft Windows
Media Foundation Remote Code Execution Vulnerability
Critical
7.8
No
No
RCE



Microsoft Windows
Media Foundation Remote Code Execution Vulnerability
Critical
8.8
No
No
RCE



Microsoft Windows
VMSwitch Elevation of Privilege Vulnerability
Critical
9.9
No
No
EoP



Microsoft Word Remote
Code Execution Vulnerability
Critical
7.8
No
No
RCE



Minecraft Bedrock
Dedicated Server Remote Code Execution Vulnerability
Critical
9.8
No
No
RCE



Windows Active
Directory Domain Services Remote Code Execution Vulnerability
Critical
8.1
No
No
RCE



Windows DHCP Server
Remote Code Execution Vulnerability
Critical
9.8
No
No
RCE



Windows GDI+ Remote
Code Execution Vulnerability
Critical
9.6
No
No
RCE



Windows Hyper-V
Elevation of Privilege Vulnerability
Critical
8.2
No
No
EoP



Windows Media Remote
Code Execution Vulnerability
Critical
7.8
No
No
RCE



Windows Reliable
Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability
Critical
8.8
No
No
RCE



Windows Secure Kernel
Mode Elevation of Privilege Vulnerability
Critical
7.8
No
No
EoP



Windows Secure Socket
Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
Critical
8.1
No
No
RCE



Windows Server Update
Service (WSUS) Elevation of Privilege Vulnerability
Critical
8.8
No
No
EoP



.NET Denial of Service
Vulnerability
Important
7.5
No
No
DoS



.NET Denial of Service
Vulnerability
Important
7.5
No
No
DoS



.NET Framework Denial
of Service Vulnerability
Important
7.5
No
No
DoS



.NET Framework Denial
of Service Vulnerability
Important
7.5
No
No
DoS



.NET Framework Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



.NET Security Feature
Bypass Vulnerability
Important
8.1
No
No
SFB



.NET Spoofing
Vulnerability
Important
6.5
No
No
Spoofing



Active Directory
Denial of Service Vulnerability
Important
7.1
No
No
DoS



Active Directory
Federation Server Denial of Service Vulnerability
Important
7.5
No
No
DoS



ASP.NET Core Denial of
Service Vulnerability
Important
7.5
No
No
DoS



ASP.NET Core Elevation
of Privilege Vulnerability
Important
8.8
No
No
EoP



Azure Active Directory
Denial of Service Vulnerability
Important
7.5
No
No
DoS



Azure CycleCloud
Elevation of Privilege Vulnerability
Important
6.5
No
No
EoP



Azure Spring Apps
Elevation of Privilege Vulnerability
Important
8.2
No
No
EoP



Code Integrity DLL
(ci.dll) Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Content Delivery
Manager Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Desktop Window Manager
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



DirectX Graphics
Kernel Elevation of Privilege Vulnerability
Important
7
No
No
EoP



DirectX Graphics
Kernel Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



DirectX Graphics
Kernel Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



DirectX Graphics
Kernel Elevation of Privilege Vulnerability
Important
7
No
No
EoP



DNS Client Tampering
Vulnerability
Important
6.1
No
No
Tampering



Game: Age of Empires
II: Definitive Edition Remote Code Execution Vulnerability
Important
8.8
No
No
RCE



GitHub Copilot and
Visual Studio Code Security Feature Bypass Vulnerability
Important
8.8
No
No
SFB



HTTP.sys Denial of
Service Vulnerability
Important
7.5
No
No
DoS



HTTP/2 Denial of
Service Vulnerability
Important
7.5
No
No
DoS



M365 Copilot for iOS
Elevation of Privilege Vulnerability
Important
8.1
No
No
EoP



Microsoft Brokering
File System Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Microsoft Brokering
File System Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Microsoft Brokering
File System Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Microsoft Defender for
Endpoint for Mac Elevation of Privilege Vulnerability
Important
5.5
No
No
EoP



Microsoft DWM Core
Library Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Microsoft Edge
(Chromium-based) Elevation of Privilege Vulnerability
Important
8.3
No
No
EoP



Microsoft Edge
(Chromium-based) Information Disclosure Vulnerability
Important
6.1
No
No
Info



Microsoft Edge
(Chromium-based) Remote Code Execution Vulnerability
Important
7.5
No
No
RCE



Microsoft Edge
(Chromium-based) Remote Code Execution Vulnerability
Important
7.5
No
No
RCE



Microsoft Edge
(Chromium-based) Remote Code Execution Vulnerability
Important
7.5
No
No
RCE



Microsoft Edge
(Chromium-based) Remote Code Execution Vulnerability
Important
8.8
No
No
RCE



Microsoft Edge
(Chromium-based) Remote Code Execution Vulnerability
Important
7.5
No
No
RCE



Microsoft Edge
(Chromium-based) Remote Code Execution Vulnerability
Important
8.3
No
No
RCE



Microsoft Edge
(Chromium-based) Remote Code Execution Vulnerability
Important
8.3
No
No
RCE



Microsoft Edge
(Chromium-based) Remote Code Execution Vulnerability
Important
9
No
No
RCE



Microsoft Edge
(Chromium-based) Remote Code Execution Vulnerability
Important
7.5
No
No
RCE



Microsoft Edge
(Chromium-based) Remote Code Execution Vulnerability
Important
7.5
No
No
RCE



Microsoft Edge
(Chromium-based) Security Feature Bypass Vulnerability
Important
8.3
No
No
SFB



Microsoft Edge
(Chromium-based) Spoofing Vulnerability
Important
6.5
No
No
Spoofing



Microsoft Edge
(Chromium-based) Spoofing Vulnerability
Important
6.5
No
No
Spoofing



Microsoft Edge
(Chromium-based) Spoofing Vulnerability
Important
7.4
No
No
Spoofing



Microsoft Edge
(Chromium-based) Spoofing Vulnerability
Important
8.1
No
No
Spoofing



Microsoft Edge
(Chromium-based) Spoofing Vulnerability
Important
7.2
No
No
Spoofing



Microsoft Edge for
Android Information Disclosure Vulnerability
Important
7.1
No
No
Info



Microsoft Edge for
Android Information Disclosure Vulnerability
Important
6.2
No
No
Info



Microsoft Edge for
Android Remote Code Execution Vulnerability
Important
7.5
No
No
RCE



Microsoft Excel
Information Disclosure Vulnerability
Important
6.6
No
No
Info



Microsoft Excel
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Microsoft Excel
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Microsoft Excel
Information Disclosure Vulnerability
Important
6.5
No
No
Info



Microsoft Excel
Information Disclosure Vulnerability
Important
6.1
No
No
Info



Microsoft Excel Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Excel Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Excel Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Excel Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Excel Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Excel Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Excel Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Excel Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Excel Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Excel Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Excel Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Excel Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Exchange
Server Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Microsoft Fabric Data
Warehouse Remote Code Execution Vulnerability
Important
8.8
No
No
RCE



Microsoft Message
Queuing Queue Manager Remote Code Execution Vulnerability
Important
8.1
No
No
RCE



Microsoft Office
Information Disclosure Vulnerability
Important
7.1
No
No
Info



Microsoft Office
Information Disclosure Vulnerability
Important
6.2
No
No
Info



Microsoft Office
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Microsoft Office
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Microsoft Office
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Microsoft Office
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Microsoft Office
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Microsoft Office
Remote Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Office
Remote Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft OneNote
Remote Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft PC Manager
Elevation of Privilege Vulnerability
Important
8.8
No
No
EoP



Microsoft SharePoint
Elevation of Privilege Vulnerability
Important
8.8
No
No
EoP



Microsoft SharePoint
Server Information Disclosure Vulnerability
Important
6.5
No
No
Info



Microsoft SharePoint
Server Spoofing Vulnerability
Important
4.6
No
No
Spoofing



Microsoft SharePoint
Server Spoofing Vulnerability
Important
4.6
No
No
Spoofing



Microsoft SharePoint
Server Spoofing Vulnerability
Important
4.6
No
No
Spoofing



Microsoft SharePoint
Server Spoofing Vulnerability
Important
7.3
No
No
Spoofing



Microsoft SharePoint
Server Spoofing Vulnerability
Important
5.4
No
No
Spoofing



Microsoft SQL Server
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Microsoft SQL Server
Information Disclosure Vulnerability
Important
6.5
No
No
Info



Microsoft Windows App
Store Elevation of Privilege Vulnerability
Important
8.1
No
No
EoP



Microsoft Windows App
Store Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Microsoft Windows
Media Foundation Remote Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Word
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Microsoft Word
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Microsoft Word Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Word Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft Word Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Microsoft XML Security
Feature Bypass Vulnerability
Important
6.4
No
No
SFB



NTFS Elevation of
Privilege Vulnerability
Important
7.8
No
No
EoP



OData for ASP.NET and
ASP.NET Core Denial of Service Vulnerability
Important
7.5
No
No
DoS



Remote Access
Management service/API (RPC server) Elevation of Privilege Vulnerability
Important
8
No
No
EoP



Remote Desktop Client
Remote Code Execution Vulnerability
Important
8.8
No
No
RCE



Secure Boot Security
Feature Bypass Vulnerability
Important
7.8
No
No
SFB



Storage Spaces Direct
Elevation of Privilege Vulnerability
Important
6.2
No
No
EoP



Universal Plug and
Play (upnp.dll) Information Disclosure Vulnerability
Important
5.5
No
No
Info



Universal Print
Management Service Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Virtual Hard Disk
(VHD) Miniport Driver Elevation of Privilege Vulernability
Important
7.8
No
No
EoP



Visual Studio Code
Security Feature Bypass Vulnerability
Important
5.5
No
No
SFB



Visual Studio Code
Security Feature Bypass Vulnerability
Important
8.8
No
No
SFB



Win32k Elevation of
Privilege Vulnerability
Important
7
No
No
EoP



Win32k Elevation of
Privilege Vulnerability
Important
7
No
No
EoP



Win32k Elevation of
Privilege Vulnerability
Important
6.2
No
No
EoP



Win32k Information
Disclosure Vulnerability
Important
5.5
No
No
Info



Windows Active
Directory Denial of Service Vulnerability
Important
7.5
No
No
DoS



Windows Active
Directory Domain Services Denial of Service Vulnerability
Important
6.5
No
No
DoS



Windows Active
Directory Federation Services (ADFS) Information Disclosure Vulnerability
Important
7.1
No
No
Info



Windows Active
Directory Federation Services Denial of Service Vulnerability
Important
7.5
No
No
DoS



Windows Active
Directory Federation Services Denial of Service Vulnerability
Important
7.5
No
No
DoS



Windows Active
Directory Federation Services Denial of Service Vulnerability
Important
7.5
No
No
DoS



Windows Admin Center
(WAC) Remote Code Execution Vulnerability
Important
7.8
No
No
RCE



Windows Admin Center
(WAC) Remote Code Execution Vulnerability
Important
8.8
No
No
RCE



Windows Admin Center
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Ancillary
Function Driver for WinSock Elevation of Privilege Vulnerability
Important
4.7
No
No
EoP



Windows Ancillary
Function Driver for WinSock Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows App Package
Installer Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows App Package
Installer Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows AppX
Deployment Extensions Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Audio Service
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Backup Engine
Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Bluetooth Port
Driver Remote Code Execution
Important
8
No
No
RCE



Windows Boot Loader
Security Feature Bypass Vulnerability
Important
6
No
No
SFB



Windows Clip Service
Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Clipboard
Server Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Cloud Files
Mini Filter Driver Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Cloud Files
Mini Filter Driver Information Disclosure Vulnerability
Important
5.5
No
No
Info



Windows Common Log
File System Driver Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Container
Isolation FS Filter Driver (unionfs.sys) Information Disclosure Vulnerability
Important
7.1
No
No
Info



Windows Cryptographic
Services Security Feature Bypass Vulnerability
Important
4.2
No
No
SFB



Windows Data.dll
Remote Code Execution Vulnerability
Important
7.8
No
No
RCE



Windows DHCP Client
Elevation of Privilege Vulnerability
Important
8
No
No
EoP



Windows DHCP Server
Remote Code Execution Vulnerability
Important
7.5
No
No
RCE



Windows DNS Client
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows DNS Client
Tampering Vulnerability
Important
7.1
No
No
Tampering



Windows DNS Server
Remote Code Execution Vulnerability
Important
6.8
No
No
RCE



Windows DWM Core
Library Information Disclosure
Vulnerability
Important
5.5
No
No
Info



Windows Event Logging
Service Information Disclosure Vulnerability
Important
6.5
No
No
Info



Windows File Explorer
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Windows File Explorer
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Windows File Explorer
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Windows File Explorer
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Windows File History
Service Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows FTP Service
Remote Code Execution Vulnerability
Important
9.8
No
No
RCE



Windows GDI+ Remote
Code Execution Vulnerability
Important
8.4
No
No
RCE



Windows Graphics
Component Remote Code Execution Vulnerability
Important
7.8
No
No
RCE



Windows Human
Interface Device Information Disclosure Vulnerability
Important
4.7
No
No
Info



Windows Hyper-V
Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Input Method
Editor (IME) Elevation of Privilege Vulnerability
Important
8.8
No
No
EoP



Windows Installer
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Internal Task
Bar Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Kernel
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Kernel
Elevation of Privilege Vulnerability
Important
8.8
No
No
EoP



Windows Kernel
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Kernel
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Kernel
Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Kernel
Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Kernel
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Kernel
Elevation of Privilege Vulnerability
Important
8.8
No
No
EoP



Windows Kernel
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Kernel
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Kernel
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Windows Kernel
Information Disclosure Vulnerability
Important
7.5
No
No
Info



Windows Kernel
Information Disclosure Vulnerability
Important
8.2
No
No
Info



Windows Kernel
Security Feature Bypass Vulnerability
Important
5.5
No
No
SFB



Windows Kernel-Mode
Driver Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Key Guard
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Local Security
Authority Subsystem Service (LSASS) Denial of Service Vulnerability
Important
7.5
No
No
DoS



Windows LUA File
Virtualization Filter Driver Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Media
Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Media
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Media
Elevation of Privilege Vulnerability
Important
7.5
No
No
EoP



Windows Media
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Media
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Media
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Windows Media Photo
Codec Information Disclosure Vulnerability
Important
5.5
No
No
Info



Windows Message
Queuing Service (MSMQ) Remote Code Execution Vulnerability
Important
9.8
No
No
RCE



Windows MIDI Service
Module Elevation of Privileges Vulnerability
Important
8.8
No
No
EoP



Windows MIDI Service
Module Elevation of Privileges Vulnerability
Important
7
No
No
EoP



Windows Netlogon
Elevation of Privilege Vulnerability
Important
7.5
No
No
EoP



Windows Network
Connections Service Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Network File
System Remote Code Execution Vulnerability
Important
5.9
No
No
RCE



Windows Network Policy
Server SNMP Information Disclosure Vulnerability
Important
7.5
No
No
Info



Windows NFS Server
Elevation of Privilege Vulnerability
Important
7.5
No
No
EoP



Windows NTFS Elevation
of Privilege Vulnerability
Important
7.3
No
No
EoP



Windows NTFS Elevation
of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows NTFS Elevation
of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows NTFS
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Windows NTFS Remote
Code Execution Vulnerability
Important
8.4
No
No
RCE



Windows NTFS Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Windows NTFS Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Windows NTFS Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Windows NTFS Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Windows NTFS Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Windows NTFS Remote
Code Execution Vulnerability
Important
7.8
No
No
RCE



Windows OLE Remote
Code Execution Vulnerability
Important
8.1
No
No
RCE



Windows Operating
Systems Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Overlay Filter
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows PowerShell
Remote Code Execution Vulnerability
Important
8
No
No
RCE



Windows Print
Configuration Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Print Spooler
Information Disclosure Vulnerability
Important
6.1
No
No
Info



Windows Projected File
System Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Push
Notification Information Disclosure Vulnerability
Important
5.5
No
No
Info



Windows Push
Notification Information Disclosure Vulnerability
Important
5.5
No
No
Info



Windows Push
Notifications Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Redirected
Drive Buffering System Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Remote Access
Service Infrastructure Elevation of Privilege Vulnerability
Important
8.8
No
No
EoP



Windows Remote Desktop
Client Information Disclosure Vulnerability
Important
6.5
No
No
Info



Windows Remote Desktop
Client Information Disclosure Vulnerability
Important
6.5
No
No
Info



Windows Remote Desktop
Client Information Disclosure Vulnerability
Important
6.5
No
No
Info



Windows Remote Desktop
Protocol (RDP) Information Disclosure Vulnerability
Important
6.5
No
No
Info



Windows Remote Desktop
Protocol (RDP) Information Disclosure Vulnerability
Important
6.5
No
No
Info



Windows Remote Desktop
Protocol (RDP) Information Disclosure Vulnerability
Important
6.5
No
No
Info



Windows Remote Desktop
Services Elevation of Privilege Vulnerability
Important
8.8
No
No
EoP



Windows Remote Help
Defense Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Resilient File
System (ReFS) Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Resilient File
System (ReFS) Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Resilient File
System (ReFS) Remote Code Execution Vulnerability
Important
7.8
No
No
RCE



Windows Resilient File
System (ReFS) Remote Code Execution Vulnerability
Important
7.8
No
No
RCE



Windows Resilient File
System (ReFS) Remote Code Execution Vulnerability
Important
6.8
No
No
RCE



Windows Resilient File
System (ReFS) Remote Code Execution Vulnerability
Important
7.8
No
No
RCE



Windows Routing and
Remote Access Service (RRAS) Elevation of Privilege Vulnerability
Important
7.1
No
No
EoP



Windows Runtime
Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Runtime
Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Runtime
Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Runtime
Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Runtime
Elevation of Privilege Vulnerability
Important
8.1
No
No
EoP



Windows Runtime
Elevation of Privilege Vulnerability
Important
8.8
No
No
EoP



Windows Runtime
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Runtime
Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Runtime
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Search Service
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Secure Channel
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Windows Sensor Data
Service Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Server
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows SMB Elevation
of Privilege Vulnerability
Important
7.5
No
No
EoP



Windows SMB
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Windows SMB Server
Denial of Service Vulnerability
Important
6.5
No
No
DoS



Windows SMB Server
Network Transport Driver (srvnet.sys) Remote Code Execution Vulnerability
Important
7.5
No
No
RCE



Windows Spaceport.sys
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows
StateRepository API Server file Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Storage Spaces
Direct Remote Code Execution Vulnerability
Important
6.8
No
No
RCE



Windows Subsystem for
Linux (WSL2) Kernel Tampering Vulnerability
Important
6.3
No
No
Tampering



Windows TCP/IP
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows TCP/IP
Information Disclosure Vulnerability
Important
5.5
No
No
Info



Windows Terminal
Remote Code Execution Vulnerability
Important
7.8
No
No
RCE



Windows Unified
Consent System Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Universal Disk
Format File System Driver (UDFS) Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows USB Audio
Class Driver Information Disclosure Vulnerability
Important
4.6
No
No
Info



Windows USB Audio
Class Driver Information Disclosure Vulnerability
Important
6.8
No
No
Info



Windows USB Hub Driver
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows USB Print
Driver Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows USB Print
Driver Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows USB Print
Driver Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows User Interface
Core Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Web Proxy
Auto-Discovery Protocol (WPAD) Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows WebView
Elevation of Privilege Vulnerability
Important
7
No
No
EoP



Windows Win32k
Elevation of Privilege Vulnerability
Important
8.8
No
No
EoP



Windows Win32k
Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Windows Win32k
Elevation of Privilege Vulnerability
Important
8.8
No
No
EoP



Windows Win32k
Elevation of Privilege Vulnerability
Important
8.8
No
No
EoP



Windows Wireless
Network Manager Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Wireless Wide Area
Network Service (WwanSvc) Elevation of Privilege Vulnerability
Important
7.8
No
No
EoP



Microsoft Edge
(Chromium-based) Spoofing Vulnerability
Moderate
5.4
No
No
Spoofing



Outlook Copilot
Tampering Vulnerability
Moderate
6.3
No
No
Tampering



Microsoft
Edge (Chromium-based) Spoofing Vulnerability
Low
4.3
No
No
Spoofing

<![if supportMisalignedColumns]>









<![endif]>























** Indicates this CVEs has already been resolved by Microsoft, and no further action is needed by the end user.

 

 

I’ll do my best to summarize everything else in this release, but no promises. I’m only human after all.

 

Looking at the remaining Critical-rated patches, Office is its own weather system: fourteen Word/Excel/PowerPoint/Office RCEs clustered at CVSS 7.8, plus five Windows Media Foundation RCEs. Outside of the Preview Pane attack vector, they are individually unremarkable; collectively, patch Office and reboot. Always reboot. We’ve already mentioned DHCP some, but DHCP Server can't catch a break. Beyond the one already covered, add CVE-2026-56159, CVE-2026-48564, CVE-2026-50370, and DHCP Client cousin CVE-2026-54128. Five DHCP RCEs in one release. Rounding things out, Print Spooler (CVE-2026-58608), Windows TCP/IP (CVE-2026-54999), and a SQL Server RCE pair (CVE-2026-54117/54118) all receive patches, and all are rated a CVSS 8.8. VE-2026-55944 (Dynamics NAV/Business Central On-Prem RCE, 9.8) is the same deserialization flavor as the SharePoint pair; it’s unauthenticated, network-reachable, and easy to overlook since it's not SharePoint. CVE-2026-48561 (Microsoft Copilot RCE, 9.6) and CVE-2026-50380 (Windows GDI+ RCE, 9.6) round out the near-top tier. Don't forget CVE-2026-55040, a SharePoint Security Feature Bypass (9.1) — patch it in the same pass as the SharePoint RCE pair since it's the same product family. Identity and infrastructure get hit too: CVE-2026-54121 (AD Certificate Services EoP, 8.8) and CVE-2026-50444 (WSUS EoP, 8.8). The obscure Reliable Multicast Transport Driver (RMCAST) takes two RCEs (CVE-2026-54982, CVE-2026-54995), and CVE-2026-50474 gives Remote Desktop Client its own RCE, separate from the RDP one already covered. The rest is a long tail: Defender RCE x2, GDI+ again, Windows Media x2, Secure Kernel Mode EoP x2, and a second Hyper-V EoP. You can consider these “normal” as far as patch cadence goes.

That leaves us with 95 RCE to discuss. I would explain, but there is too much, so let me sum up. CVE-2026-55944 (Dynamics NAV/Business Central On-Prem, 9.8) is the same deserialization flavor as the SharePoint pair: unauthenticated, easy to miss since it's not SharePoint. CVE-2026-54990 (Remote Desktop Client), CVE-2026-49172 (Windows FTP Service), and CVE-2026-50447 (MSMQ) all hit 9.8 too, proof severity labels lag CVSS sometimes. CVE-2026-48561 (Copilot) and CVE-2026-50380 (GDI+) sit at 9.6.

The pattern worth watching: 14 Windows NTFS and 7 ReFS RCEs/ That makes 21 filesystem-driver bugs, an unusually large cluster suggesting a shared root cause. Microsoft Edge (Chromium-based) contributes 21 more that are genuinely Microsoft's to patch, not Chromium re-listing noise. Remote Desktop Client racks up a second and third RCE (CVE-2026-50474, CVE-2026-58594), and Windows Admin Center picks up two (CVE-2026-56196/56197) — WAC exposure keeps creeping into these releases. Exchange Server (CVE-2026-55005) and AD Domain Services (CVE-2026-49178) both land at 8.8.

And because this release wouldn't be complete without it: CVE-2026-50663, an RCE in Age of Empires II: Definitive Edition. Yes, really. Patch your civilization anyway.

There are close to 260 EoP bugs in this month’s release. Microsoft could have just published the EoPs and still had a record-setting month. As usual, most simply lead to local attackers executing their code at SYSTEM-level privileges or administrative privileges, so there’s not much to add without further technical details about the bugs themselves. What’s really frustrating is that 94 have no explicit privilege statement at all. Microsoft just says “elevate privileges” with no detail. By my count, that leaves around 25 bugs to consider. Some don’t elevate at all. The FAQ literally says the attacker just gets “the rights of the user running the affected application.” That covers Win32k, Clip Service, Search Service, MSMQ, and SharePoint. A few get a Low-to-Medium integrity bump. There are also a couple that lead to downgraded service accounts or arbitrary file deletion, but nothing else I’ve seen really stands out too much.

There are 20 Security Feature Bypass (SFB) bugs this month, and it's a genuinely mixed bag. CVE-2026-55040 leads at Critical, CVSS 9.1 as it’s weak authentication in SharePoint Server. Patch it in the same pass as the SharePoint RCE pair since it's the same product. The AI-coding-tool trend continues: GitHub Copilot and Visual Studio Code and Visual Studio all land SFB bugs, mostly injection or path-traversal flavored. BitLocker is this month's lone publicly disclosed bug. It’s not exploited yet, but public disclosure is a countdown clock, not a free pass. It requires physical access, as does the bug in Microsoft XML. The firmware/boot cluster is worth a second look: Secure Boot, Boot Loader, and Key Guard all touch the trust chain below the OS. Meaning, despite a low CVSS score, “if this fails, nothing above it can be trusted” stakes. Rounding out the SFB patches, there are two .NET SFBs, two Windows Kernel SFBs, and a DNS/Cryptographic Services bringing up the rear.

The July release includes 31Spoofing bugs this month, and we’ve already covered the most important (Exchange). SharePoint Server accounts for another ten with almost all the same root cause: stored XSS letting an authenticated attacker spoof content in the browser. Microsoft Edge (Chromium-based) contributes fifteen more spanning access-control failures, SSRF, type confusion, and UI misrepresentation. All genuinely Microsoft's to patch, not re-listed Chromium noise. The remaining six round out the usual suspects: a Windows NAT spoofing bug reachable from an adjacent network, a Bing app flaw on iOS, a PowerBI Report Server XSS issue, a .NET output-encoding bug, and an AD FS spoofing flaw. None publicly disclosed, none exploited, but with SharePoint's history this year, don't let "just Spoofing" lull you into deprioritizing the patch cycle.

Of 111 Information Disclosure bugs, the overwhelming majority of these simply result in info leaks consisting of unspecified memory contents or memory addresses. GitHub Copilot is the standout. Here, the bug insufficiently protected credentials, meaning actual secrets leak, not memory scraps. The Windows Admin Center flaw discloses data via improper authentication. A management console leaking to an unauthorized party is a bigger deal than it sounds. SharePoint uses SSRF to pull data server-side, and the Event Logging Service is a protection-mechanism failure, not a memory bug at all. Edge picks up three genuinely file-system-flavored disclosures — improper authorization, files/directories accessible to external parties, and link-following — plus Edge for Android exposing “private personal information” twice and two path-traversal bugs. The remaining 40+ are mostly one-line “exposure of sensitive information to an unauthorized actor” entries scattered across File Explorer, Push Notifications, Cryptographic Services, and Win32k.

Only 8 Tampering bugs this month, the smallest bucket, but a couple stand out. The top of the list is a WSUS bug, caused by an uncaught exception that lets an unauthenticated attacker tamper with the update service over the network. That’s your patch-management infrastructure itself being the target, which always deserves extra attention. Windows CNG (the crypto API) picks up a missing-cryptographic-step flaw, and Windows DNS Client shows up three separate times across the list, twice for improper access control and once for missing authentication on a critical function. DNS resolution having this many tampering paths in one release is worth flagging as a pattern rather than three unrelated bugs. The one genuinely different entry is Outlook Copilot, described simply as vulnerable to “malicious uses” enabling tampering over the network. That’s a fantastically vague phrasing for an AI-assistant feature, continuing this year's running theme of Copilot-branded features showing up somewhere in every release. Finally, a .NET link-following bug and a WSL2 kernel race condition receive patches. Both require local/authorized access to trigger.

Still with me? Good, because we have 35 DoS bugs to cover, and this is really an identity-infrastructure story more than a grab-bag. Active Directory Federation Services alone accounts for seven of them, all sitting at CVSS 7.5, all stack-based buffer overflows or infinite loops that let an unauthenticated attacker knock the service over the network. The .NET ecosystem is the other big cluster: .NET, .NET Framework, and ASP.NET Core/OData contribute nine bugs combined, almost all “allocation of resources without limits or throttling”.  HTTP.sys and HTTP/2 pick up the same flavor. LSASS shows up twice, which is always worth a second look given what that process actually holds. Rounding out the list are patches for Windows DHCP Server, SMB Server, Secure Channel, Hyper-V, and IKE Protocol each take a single hit, mostly requiring authorized or adjacent-network access rather than being wide open to the internet.

No new advisories are being released this month.

Looking Ahead

The next Patch Tuesday will be on August 11, just after Hacker Summer Camp in sunny Las Vegas. Should I survive the heat, I’ll be back then to give you my full thoughts on the release – no matter how large it may be. Until then, stay safe, happy patching, and may all your reboots be smooth and clean!

Vollständiges Original-Advisory
Ausführliche Details, Exploit-Analyse & Hersteller-Stellungnahme auf thezdi.com.
↗ Original-Artikel auf thezdi.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
Teilen mit Netzwerk & Team:
Community Threat-Level Barometer
Live Votum

Wie stufst du das Risiko dieser Schwachstelle / Bedrohung für dein Unternehmen ein?

Noch keine Stimmen — schätze das Risiko als Erster ein.

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 0%
🟡 In Evaluierung 0%
🟢 Keine Auswirkung 0%
Spannende Innovation 0%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
1 Quelle
Staatliche Hacker treiben laut Chainalysis einen Anstieg von 420 % bei Onchain-Malware voran
1 Quelle
Chinesische KI-Modelle verursachen Anstieg der auf der Blockchain platzierten Malware ...
1 Quelle
Millionen-Lösegeld nach Hacker-Angriff auf Revolut: Was Kunden jetzt wissen müssen