logo

Patch Tuesday, January 2026 Edition

ID: eb80c48c-5c73-59dd-8557-5b87e243080e

STIX ID: report--eb80c48c-5c73-59dd-8557-5b87e243080e

Feed Name: Krebs on Security

Threat Score
80/100

Date Published: 2026-01-14

Date Updated: 2026-04-19

Author: BrianKrebs

...
...

January 2026 Patch Tuesday: Microsoft released fixes for 113 vulnerabilities across Windows and related software, calling out an actively exploited Desktop Window Manager zero-day (CVE-2026-20805), critical Secure Boot bypass (CVE-2026-21265) with certificate expiry implications, Office remote code execution issues, and the removal of legacy modem drivers due to privilege-elevation risks; vendors and researchers urge rapid patching and cautious bootloader/BIOS updates to avoid unbootable systems. Browser updates from Mozilla are also noted, with Chrome/Edge updates expected.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.