logo

Microsoft Fixes Two Publicly Disclosed Zero-Days

ID: b05338ed-20c0-51bb-ad80-bef607ac8f49

STIX ID: report--b05338ed-20c0-51bb-ad80-bef607ac8f49

Feed Name: Infosecurity Magazine (News)

Threat Score
60/100

Date Published: 2026-03-11

Date Updated: 2026-04-22

...
...

Microsoft's March Patch Tuesday addresses 79 vulnerabilities, notably two publicly disclosed zero-days (an SQL Server elevation-of-privilege CVE-2026-21262 with CVSS 8.8 and a .NET denial-of-service CVE-2026-26127) and a predominance of elevation-of-privilege flaws in Windows components that could enable privilege escalation if combined with other access vectors; no confirmed widespread exploitation is reported but administrators are urged to patch, especially exposed SQL Server instances and critical infrastructure components.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.