Microsoft Security Response Center
Monthly Patch Tuesday advisories covering Windows, Azure, Office, and the wider Microsoft platform.
7,775 advisories tracked · showing 100
- Jul 20, 2026CVE-2022-3775-MCVE-2022-3775-M
CVE-2022-3775-M
- Jul 20, 2026CVE-2022-2601-MCVE-2022-2601-M
CVE-2022-2601-M
- Jul 20, 2026CVE-2024-38083MediumCVSS 4.3CVE-2024-38083
Microsoft Edge (Chromium-based) Spoofing Vulnerability
- Jul 20, 2026CVE-2024-5845CVE-2024-5845
Chromium: CVE-2024-5845 Use after free in Audio
- Jul 20, 2026CVE-2024-5847CVE-2024-5847
Chromium: CVE-2024-5847 Use after free in PDFium
- Jul 20, 2026CVE-2024-5846CVE-2024-5846
Chromium: CVE-2024-5846 Use after free in PDFium
- Jul 20, 2026CVE-2024-30052HighCVSS 4.7CVE-2024-30052
Visual Studio Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-34122MediumCVE-2024-34122
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-6291CVE-2024-6291
Chromium: CVE-2024-6291 Use after free in Swiftshader
- Jul 20, 2026CVE-2024-6292CVE-2024-6292
Chromium: CVE-2024-6292 Use after free in Dawn
- Jul 20, 2026CVE-2024-6293CVE-2024-6293
Chromium: CVE-2024-6293 Use after free in Dawn
- Jul 20, 2026CVE-2024-6290CVE-2024-6290
Chromium: CVE-2024-6290 Use after free in Dawn
- Jul 20, 2026CVE-2024-30057LowCVSS 5.4CVE-2024-30057
Microsoft Edge for iOS Spoofing Vulnerability
- Jul 20, 2026CVE-2024-30058LowCVSS 5.4CVE-2024-30058
Microsoft Edge (Chromium-based) Spoofing Vulnerability
- Jul 20, 2026CVE-2024-37325HighCVSS 8.1CVE-2024-37325
Azure Science Virtual Machine (DSVM) Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-35265HighCVSS 7.0CVE-2024-35265
Windows Perception Service Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-35263HighCVSS 5.7CVE-2024-35263
Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability
- Jul 20, 2026CVE-2024-35254HighCVSS 7.1CVE-2024-35254
Azure Monitor Agent Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-35253HighCVSS 4.4CVE-2024-35253
Microsoft Azure File Sync Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-35252HighCVSS 7.5CVE-2024-35252
Azure Storage Movement Client Library Denial of Service Vulnerability
- Jul 20, 2026CVE-2024-35249HighCVSS 8.8CVE-2024-35249
Microsoft Dynamics 365 Business Central Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-35248HighCVSS 7.3CVE-2024-35248
Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30104HighCVSS 7.8CVE-2024-30104
Microsoft Office Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30103HighCVSS 8.8CVE-2024-30103
Microsoft Outlook Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30102HighCVSS 7.3CVE-2024-30102
Microsoft Office Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30101HighCVSS 7.5CVE-2024-30101
Microsoft Office Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30100HighCVSS 7.8CVE-2024-30100
Microsoft SharePoint Server Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30099HighCVSS 7.0CVE-2024-30099
Windows Kernel Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30097HighCVSS 8.8CVE-2024-30097
Microsoft Speech Application Programming Interface (SAPI) Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30096HighCVSS 5.5CVE-2024-30096
Windows Cryptographic Services Information Disclosure Vulnerability
- Jul 20, 2026CVE-2024-30095HighCVSS 7.8CVE-2024-30095
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30094HighCVSS 7.8CVE-2024-30094
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30093HighCVSS 7.3CVE-2024-30093
Windows Storage Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30091HighCVSS 7.8CVE-2024-30091
Win32k Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30090HighCVSS 7.0CVE-2024-30090
Microsoft Streaming Service Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30089HighCVSS 7.8CVE-2024-30089
Microsoft Streaming Service Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30088HighCVSS 7.0CVE-2024-30088
Windows Kernel Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30087HighCVSS 7.8CVE-2024-30087
Win32k Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30086HighCVSS 7.8CVE-2024-30086
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30085HighCVSS 7.8CVE-2024-30085
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30084HighCVSS 7.0CVE-2024-30084
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30083HighCVSS 7.5CVE-2024-30083
Windows Standards-Based Storage Management Service Denial of Service Vulnerability
- Jul 20, 2026CVE-2024-30068HighCVSS 8.8CVE-2024-30068
Windows Kernel Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30067HighCVSS 5.5CVE-2024-30067
Winlogon Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30066HighCVSS 5.5CVE-2024-30066
Winlogon Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30065HighCVSS 5.5CVE-2024-30065
Windows Themes Denial of Service Vulnerability
- Jul 20, 2026CVE-2024-30064HighCVSS 8.8CVE-2024-30064
Windows Kernel Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30063HighCVSS 6.7CVE-2024-30063
Windows Distributed File System (DFS) Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30062HighCVSS 7.8CVE-2024-30062
Windows Standards-Based Storage Management Service Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-29060HighCVSS 6.7CVE-2024-29060
Visual Studio Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-35260CriticalCVSS 8.0CVE-2024-35260
Microsoft Dataverse Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-38082LowCVSS 4.7CVE-2024-38082
Microsoft Edge (Chromium-based) Spoofing Vulnerability
- Jul 20, 2026CVE-2024-38093MediumCVSS 4.3CVE-2024-38093
Microsoft Edge (Chromium-based) Spoofing Vulnerability
- Jul 20, 2026CVE-2024-6100CVE-2024-6100
Chromium: CVE-2024-6100 Type Confusion in V8
- Jul 20, 2026CVE-2024-6101CVE-2024-6101
Chromium: CVE-2024-6101: Inappropriate implementation in WebAssembly
- Jul 20, 2026CVE-2024-6102CVE-2024-6102
Chromium: CVE-2024-6102: Out of bounds memory access in Dawn
- Jul 20, 2026CVE-2024-6103CVE-2024-6103
Chromium: CVE-2024-6103: Use after free in Dawn
- Jul 20, 2026CVE-2024-5495CVE-2024-5495
Chromium: CVE-2024-5495 Use after free in Dawn
- Jul 20, 2026CVE-2024-5497CVE-2024-5497
Chromium: CVE-2024-5497 Out of bounds memory access in Keyboard Inputs
- Jul 20, 2026CVE-2024-5494CVE-2024-5494
Chromium: CVE-2024-5494 Use after free in Dawn
- Jul 20, 2026CVE-2024-5499CVE-2024-5499
Chromium: CVE-2024-5499 Out of bounds write in Streams API
- Jul 20, 2026CVE-2024-5496CVE-2024-5496
Chromium: CVE-2024-5496 Use after free in Media Session
- Jul 20, 2026CVE-2024-5498CVE-2024-5498
Chromium: CVE-2024-5498 Use after free in Presentation API
- Jul 20, 2026CVE-2024-5493CVE-2024-5493
Chromium: CVE-2024-5493 Heap buffer overflow in WebRTC
- Jul 20, 2026CVE-2024-29187HighCVSS 7.3CVE-2024-29187
GitHub: CVE-2024-29187 WiX Burn-based bundles are vulnerable to binary hijack when run as SYSTEM
- Jul 20, 2026CVE-2023-50868HighCVSS 7.5CVE-2023-50868
MITRE: CVE-2023-50868 NSEC3 closest encloser proof can exhaust CPU
- Jul 20, 2026CVE-2024-35255HighCVSS 5.5CVE-2024-35255
Azure Identity Libraries and Microsoft Authentication Library Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-35250HighCVSS 7.8CVE-2024-35250
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30082HighCVSS 7.8CVE-2024-30082
Win32k Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30080CriticalCVSS 9.8CVE-2024-30080
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30078HighCVSS 8.8CVE-2024-30078
Windows Wi-Fi Driver Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30077HighCVSS 8.0CVE-2024-30077
Windows OLE Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30076HighCVSS 6.8CVE-2024-30076
Windows Container Manager Service Elevation of Privilege Vulnerability
- Jul 20, 2026CVE-2024-30075HighCVSS 8.0CVE-2024-30075
Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30074HighCVSS 8.0CVE-2024-30074
Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30072HighCVSS 7.8CVE-2024-30072
Microsoft Event Trace Log File Parsing Remote Code Execution Vulnerability
- Jul 20, 2026CVE-2024-30070HighCVSS 7.5CVE-2024-30070
DHCP Server Service Denial of Service Vulnerability
- Jul 20, 2026CVE-2024-30069HighCVSS 4.7CVE-2024-30069
Windows Remote Access Connection Manager Information Disclosure Vulnerability
- Jul 20, 2026CVE-2024-5830CVE-2024-5830
Chromium: CVE-2024-5830 Type Confusion in V8
- Jul 20, 2026CVE-2024-5832CVE-2024-5832
Chromium: CVE-2024-5832 Use after free in Dawn
- Jul 20, 2026CVE-2024-5838CVE-2024-5838
Chromium: CVE-2024-5838 Type Confusion in V8
- Jul 20, 2026CVE-2024-5842CVE-2024-5842
Chromium: CVE-2024-5842 Use after free in Browser UI
- Jul 20, 2026CVE-2024-5840CVE-2024-5840
Chromium: CVE-2024-5840 Policy Bypass in CORS
- Jul 20, 2026CVE-2024-5831CVE-2024-5831
Chromium: CVE-2024-5831 Use after free in Dawn
- Jul 20, 2026CVE-2024-5843CVE-2024-5843
Chromium: CVE-2024-5843 Inappropriate implementation in Downloads
- Jul 20, 2026CVE-2024-5834CVE-2024-5834
Chromium: CVE-2024-5834 Inappropriate implementation in Dawn
- Jul 20, 2026CVE-2024-5836CVE-2024-5836
Chromium: CVE-2024-5836 Inappropriate Implementation in DevTools
- Jul 20, 2026CVE-2024-5839CVE-2024-5839
Chromium: CVE-2024-5839 Inappropriate Implementation in Memory Allocator
- Jul 20, 2026CVE-2024-5833CVE-2024-5833
Chromium: CVE-2024-5833 Type Confusion in V8
- Jul 20, 2026CVE-2024-5844CVE-2024-5844
Chromium: CVE-2024-5844 Heap buffer overflow in Tab Strip
- Jul 20, 2026CVE-2024-5837CVE-2024-5837
Chromium: CVE-2024-5837 Type Confusion in V8
- Jul 20, 2026CVE-2024-5835CVE-2024-5835
Chromium: CVE-2024-5835 Heap buffer overflow in Tab Groups
- Jul 20, 2026CVE-2024-5841CVE-2024-5841
Chromium: CVE-2024-5841 Use after free in V8
- Jul 18, 2026CVE-2026-50012MediumCVSS 5.5CVE-2026-50012
Squid: Memory corruption in cache_digest reply handling
- Jul 18, 2026CVE-2026-47729MediumCVSS 6.5CVE-2026-47729
Squid: Memory disclosure in FTP gateway
- Jul 18, 2026CVE-2026-62299MediumCVSS 5.3CVE-2026-62299
CoreDNS: rewrite-plugin EDNS0 response-revert nil-pointer panic (remote DoS) when a downstream plugin returns a response with no OPT record
- Jul 18, 2026CVE-2026-62309HighCVSS 7.5CVE-2026-62309
CoreDNS: proxyproto plugin panics on PPv2 datagram with non-UDP transport — single 28-byte packet remote DoS
- Jul 17, 2026CVE-2026-59885HighCVSS 7.5CVE-2026-59885
pyasn1: Quadratic complexity in OBJECT IDENTIFIER and RELATIVE-OID processing allows denial of service
- Jul 17, 2026CVE-2026-15392HighCVSS 7.7CVE-2026-15392
DBD::File versions before 1.651 for Perl do not ensure the table file is not a symlink to an untrusted location
- Jul 17, 2026CVE-2026-15043CriticalCVSS 9.8CVE-2026-15043
DBI::SQL::Nano versions from 1.42 before 1.651 for Perl have inverted <= and >= SQL operators on text