Microsoft Patches 59 Vulnerabilities Including Six Actively Exploited Zero-Days
ID: 643a30d9-49d8-5e47-a594-4465f510479b
STIX ID: report--643a30d9-49d8-5e47-a594-4465f510479b
Feed Name: The Hacker News
Microsoft's February 2026 Patch Tuesday addresses 59 vulnerabilities across its software, highlighting six CVEs that have been observed exploited in the wild (including Windows Shell, MSHTML, Office Word, Desktop Window Manager, Remote Access Connection Manager, and Remote Desktop issues). The flaws range from protection mechanism bypasses and local privilege escalations to denial-of-service, prompting CISA to add the six exploited CVEs to its Known Exploited Vulnerabilities catalog and require federal agencies to apply fixes; Microsoft is also rolling out updated Secure Boot certificates and new runtime protections (Windows Baseline Security Mode and User Transparency and Consent).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
