Live

Articles from May 2026

Browse all Windows news articles published in May 2026

12 articles Page 75 of 138
Articles from May 2026
All archives
cve_2026_34337_windows.jpg
Cloud Files Driver · Patch Tuesday

CVE-2026-34337 Windows Cloud Files Driver Bug Grants SYSTEM — Patch Now

Microsoft has listed a new elevation-of-privilege vulnerability under CVE-2026-34337 in its Security Update Guide, affecting the Windows Cloud Files Mini Filter Driver. The flaw, rated Important by...

SE Security Desk·10w ago
Cve-2026-34336 · Desktop Window Manager

Microsoft Patches High-Severity DWM Information Disclosure Flaw (CVE-2026-34336) in May 2026 Update

Microsoft closed out its May 12, 2026 security update cycle with a fix for CVE-2026-34336, a local information disclosure vulnerability in the Windows Desktop Window Manager (DWM) core library. The...

SE Security Desk·10w ago
cve_2026_34334_windows.jpg
Msrc Report Confidence · Privilege Escalation

CVE-2026-34334 Windows TCP/IP Bug: Patch Now for SYSTEM Access

Microsoft has flagged CVE-2026-34334, a Windows TCP/IP privilege escalation vulnerability, with a critical exploitability assessment, pushing it to the top of the patch priority list for system...

SE Security Desk·10w ago
Cve-2026-34332 · Hotpatching

Windows Server 2025 Gets Emergency Fix for Wormable NVMe-oF Kernel RCE in KB5087539

Microsoft’s May 2026 Patch Tuesday release includes a critical fix for CVE-2026-34332, a remote code execution vulnerability in the Windows kernel-mode driver for NVMe over Fabrics (NVMe-oF) on...

SE Security Desk·10w ago
cve_2026_33838_windows.jpg
Msmq Vulnerability · Patch Tuesday

CVE-2026-33838: Windows MSMQ Bug Gives SYSTEM Access via Malformed Message

Microsoft disclosed a critical elevation-of-privilege vulnerability in its legacy Message Queuing service as part of the May 2026 Patch Tuesday releases. Tracked as CVE-2026-33838, the flaw allows a...

SE Security Desk·10w ago
Cve-2026-33837 · Privilege Escalation

Patch Tuesday fixes CVE-2026-33837: Local SYSTEM access via tcpip.sys heap overflow

CVE-2026-33837 landed on the May 2026 Patch Tuesday with an Important severity rating. It’s a local elevation-of-privilege vulnerability inside tcpip.sys, the kernel-mode driver that handles the...

SE Security Desk·10w ago
File Explorer · Performance Tuning

Windows 11 K2 update slashes File Explorer lag with WinUI 3 speed boost

Windows 11’s File Explorer has long been a sore spot for users accustomed to snappy response times. In 2026, Microsoft aims to change that narrative with an internal initiative called K2, a...

WN WindowsNews Desk·10w ago
cve_2026_33835_microsoft.jpg
Cve 2026 33835 · Patch Tuesday

CVE-2026-33835: Microsoft Patches Windows Cloud Files Elevation of Privilege Flaw in May 2026 Patch Tuesday

Microsoft fixed an elevation-of-privilege vulnerability in the Windows Cloud Files Mini Filter Driver as part of its May 2026 Patch Tuesday updates. The flaw, tracked as CVE-2026-33835, was disclosed...

SE Security Desk·10w ago
Azure Machine Learning · Cloud Vulnerabilities

CVE-2026-33833: Azure ML Notebook Spoofing Vulnerability Exposes Sensitive Data

Microsoft’s May 2026 Patch Tuesday release includes a fix for a newly disclosed vulnerability in Azure Machine Learning Notebooks that could allow attackers to access sensitive information through...

AI AI & Copilot Desk·10w ago
Cve 2026 · Patch Tuesday

CVE-2026-33112: Critical SharePoint RCE Hits On-Prem Servers May 12

Microsoft dropped a bombshell on administrators this Patch Tuesday with the publication of CVE-2026-33112, a confirmed remote code execution vulnerability in Microsoft SharePoint Server. The...

SE Security Desk·10w ago
cve_2026_33110_apply.jpg
Cve-2026-33110 · Remote Code Execution

CVE-2026-33110: Apply the SharePoint Server 2016 Security Update Regardless of Edition Label

Microsoft has released a critical security update to address CVE-2026-33110, a remote code execution vulnerability in SharePoint Server 2016. The patch is bundled under a knowledge base article that...

SE Security Desk·10w ago
.net 8 Patching · .net Security

Patch CVE-2026-42899: ASP.NET Core DoS Bug Hits .NET 8/9/10

Microsoft disclosed CVE-2026-42899 on May 12, 2026, an Important-rated denial-of-service vulnerability in ASP.NET Core. The flaw stems from an infinite-loop condition that attackers can exploit to...

SE Security Desk·10w ago