Articles from July 15, 2026
Browse all Windows news articles published on July 15, 2026
Microsoft’s July 2026 Surface Firmware Update Closes a High-Severity Privilege Escalation Hole (CVE-2026-48581)
On July 14, 2026, Microsoft disclosed CVE-2026-48581, a local elevation-of-privilege vulnerability in the firmware of multiple Surface devices. Rated 7.8 on the CVSS scale (High), the bug could allow...
Microsoft's July 2026 Update Fixes Critical DHCP Server Flaw — Here's Your Action Plan
Microsoft’s July 14, 2026 security update patches a critical remote code execution flaw in Windows DHCP Server that could let attackers with low privileges hijack entire networks. CVE-2026-48564...
Upgrade Azure Monitor Metrics Extension to 1.65 to Block Adjacent-Network Privilege Escalation
On July 14, 2026, Microsoft published a security advisory that should jolt every Azure administrator: a critical flaw in the Azure Monitor Agent Metrics Extension could allow an attacker on the same...
Update Now: Microsoft’s July Patch Slams Shut a High-Severity Push Notification Privilege Escalation Hole
On July 14, 2026, Microsoft released its monthly round of security fixes, and among them is a patch that Windows 11 and Windows Server 2025 administrators shouldn’t ignore. The vulnerability,...
Microsoft Ships .NET Signature Verification Fix—Update Runtimes to 8.0.29, 9.0.18, or 10.0.10 to Block Remote Exploits
It happened again. Microsoft’s July 14, 2026 Patch Tuesday delivered a fix for a high-severity .NET vulnerability that lets remote attackers bypass cryptographic signature checks with no user...
Microsoft Fixes Remote LSASS Vulnerability That Can Take Down Windows Domain Controllers
On July 14, 2026, Microsoft released its monthly security updates, and among the fixes is a patch for a vulnerability that should make every IT administrator sit up and take notice. CVE-2026-40378 is...
July 2026 Windows Update Closes Door on No-Authentication Network DoS in Schannel
The July 14, 2026 security updates from Microsoft patch a vulnerability in Windows Secure Channel that lets an unauthenticated attacker trigger a denial of service over a network. The flaw, tracked...
Microsoft’s July Updates Close a Backdoor in Windows Event Logs That Could Leak Your Most Sensitive Information
On July 14, 2026, Microsoft tackled a serious information-disclosure vulnerability in the Windows Event Logging Service as part of its monthly security release. The bug, tracked as CVE-2026-34348,...
Microsoft Ships Fix for PowerShell Path Traversal RCE (CVE-2026-40400) – Here’s What to Patch First
Microsoft released its July 14, 2026 security updates fixing CVE-2026-40400, a high-severity remote code execution vulnerability in Windows PowerShell that earned a CVSS 3.1 score of 8.0. The flaw...
CVE-2026-41087: File Explorer update plugs data leak—what Windows users should do
Every logged-in user on your PC could be snooping through data they shouldn’t see, thanks to a File Explorer flaw Microsoft just patched. The vulnerability, tracked as CVE-2026-41087, was disclosed...
Microsoft’s July Patch Tuesday Fixes File Explorer Flaw That Could Expose Private Data on Shared PCs
Microsoft has patched a vulnerability in Windows File Explorer that could allow someone with a local account on your PC to read private data they shouldn’t have access to. The fix arrived with the...
July 2026 Windows Updates Patch Audio Service Flaw That Leaks Event Log Memory Addresses
Microsoft’s July 14, 2026 security updates correct a vulnerability in the Windows Audio Service that exposes memory addresses belonging to the Windows Event Log service. An attacker who already has...