logo

Microsoft’s monthly Patch Tuesday is first in 6 months with no actively exploited zero-days

ID: e4300d1d-c9c9-57fa-ac3b-e4980449a940

STIX ID: report--e4300d1d-c9c9-57fa-ac3b-e4980449a940

Feed Name: CyberScoop

Threat Score
65/100

Date Published: 2026-03-10

Date Updated: 2026-04-21

Author: Matt Kapko

...
...

Microsoft’s March Patch Tuesday addressed 83 vulnerabilities across its enterprise software, including multiple privilege-escalation flaws, two publicly known bugs, an Excel information-disclosure issue that could enable Copilot Agent data exfiltration (effectively zero-click), and Office remote-code-execution vulnerabilities (CVEs rated CVSS 8.4). No actively exploited zero-days were reported, though six vulnerabilities were flagged as more likely to be exploited.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.