Microsoft Patches Record 206 Flaws, Including Three Zero-Days and Critical RCE Bugs
ID: 0363cc54-7e86-5968-bac8-c958f8c397f0
STIX ID: report--0363cc54-7e86-5968-bac8-c958f8c397f0
Feed Name: The Hacker News
Microsoft released patches for 206 vulnerabilities (39 Critical, 167 Important) in June 2026, including high-severity network-exploitable RCEs such as CVE-2026-45657 (use-after-free in Windows Kernel), CVE-2026-47291 (HTTP.sys integer overflow), CVE-2026-44815 (DHCP stack buffer overflow), multiple BitLocker bypasses and publicly disclosed zero-days. The bulletin highlights published PoC exploits (YellowKey, GreenPlasma, RoguePlanet) from researcher Chaotic Eclipse, mitigation changes like MaxHeadersCount for HTTP/2/3, and urges prioritizing patching of systems handling network services and DHCP traffic.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
