logo

Patch Tuesday: May 2026 (Expel’s version)

ID: 9d2566db-2ba6-5d56-9186-dc29bb027640

STIX ID: report--9d2566db-2ba6-5d56-9186-dc29bb027640

Feed Name: Expel Blog

Threat Score
72/100

Date Published: 2026-05-12

Date Updated: 2026-05-13

...
...

Patch Tuesday (May 12, 2026) covers 137 CVEs (16 critical) with prioritized fixes for Windows RDS EoP (CVE-2026-40398), SharePoint RCE (CVE-2026-40365), and Windows DNS Client RCE (CVE-2026-41096). The report also highlights Fortinet authentication-bypass vulnerabilities—including active proof-of-concept exploitation for CVE-2026-35616 and an SOC-observed FortiGate compromise via CVE-2024-55591—and stresses timely patching and avoiding direct exposure of management interfaces.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.