Windows Security
The latest Windows Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
Windows 11 July Patch KB5101650 Seals UPnP Library from Local File Abuse
On July 14, 2026, Microsoft released a security update that fixes a vulnerability in the Windows Universal Plug and Play (UPnP) service — a component normally associated with automatic device...
Patch Your Domain Controllers Now: Microsoft Fixes Active Directory RCE That Can Hijack Entire Networks
On July 14, 2026, Microsoft released a security update for a critical vulnerability in Windows Active Directory Domain Services (AD DS) that could allow a remote attacker to take over a domain...
Update Now: Microsoft’s July Patch Slams Shut a High-Severity Push Notification Privilege Escalation Hole
On July 14, 2026, Microsoft released its monthly round of security fixes, and among them is a patch that Windows 11 and Windows Server 2025 administrators shouldn’t ignore. The vulnerability,...
Microsoft Fixes Remote LSASS Vulnerability That Can Take Down Windows Domain Controllers
On July 14, 2026, Microsoft released its monthly security updates, and among the fixes is a patch for a vulnerability that should make every IT administrator sit up and take notice. CVE-2026-40378 is...
July 2026 Windows Update Closes Door on No-Authentication Network DoS in Schannel
The July 14, 2026 security updates from Microsoft patch a vulnerability in Windows Secure Channel that lets an unauthenticated attacker trigger a denial of service over a network. The flaw, tracked...
Microsoft Ships Fix for PowerShell Path Traversal RCE (CVE-2026-40400) – Here’s What to Patch First
Microsoft released its July 14, 2026 security updates fixing CVE-2026-40400, a high-severity remote code execution vulnerability in Windows PowerShell that earned a CVSS 3.1 score of 8.0. The flaw...
CVE-2026-41087: File Explorer update plugs data leak—what Windows users should do
Every logged-in user on your PC could be snooping through data they shouldn’t see, thanks to a File Explorer flaw Microsoft just patched. The vulnerability, tracked as CVE-2026-41087, was disclosed...
Microsoft’s July Patch Tuesday Fixes File Explorer Flaw That Could Expose Private Data on Shared PCs
Microsoft has patched a vulnerability in Windows File Explorer that could allow someone with a local account on your PC to read private data they shouldn’t have access to. The fix arrived with the...
July 2026 Windows Updates Patch Audio Service Flaw That Leaks Event Log Memory Addresses
Microsoft’s July 14, 2026 security updates correct a vulnerability in the Windows Audio Service that exposes memory addresses belonging to the Windows Event Log service. An attacker who already has...
Microsoft Fixes Windows File Explorer Vulnerability That Leaks Data to Local Attackers—Apply July Updates Now
Microsoft’s July 14, 2026 security patch bundles a fix for CVE-2026-33842, an information‑disclosure bug in Windows File Explorer that could let an attacker who’s already logged on to your PC...
Microsoft’s July 2026 Windows Updates Seal a Serious NTFS Security Hole—Patch Now
Microsoft’s monthly security update on July 14, 2026, delivered a fix for a heap-based buffer overflow in the NTFS file system that could allow an attacker to execute arbitrary code on your PC. The...
Patch Microsoft PC Manager Now to Close a Privilege Escalation Hole Windows Update Won’t Touch
Microsoft disclosed a local privilege-escalation vulnerability in its PC Manager application on July 14, 2026. The flaw, tracked as CVE-2026-58636, can allow an attacker who already has a foothold on...