Skip to main content
All vendors

Microsoft security briefs

268 published alerts for Microsoft products and services.

Microsoft MSRC

CVE-2026-58536

Windows Cloud Files Mini Filter Driver Elevation of Privilege vulnerability

Windows Cloud Files Mini Filter Driver Elevation of Privilege vulnerability (CVE-2026-58536) was added to Microsoft’s security update guidance. Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58537

Microsoft NAT Helper Components (ipnathlp.dll) Elevation of Privilege vulnerability

Microsoft NAT Helper Components (ipnathlp.dll) Elevation of Privilege vulnerability (CVE-2026-58537) was added to Microsoft’s security update guidance. Use after free in Microsoft NAT Helper Components (ipnathlp.dll) allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58539

Windows Remote Desktop Client Information Disclosure vulnerability

Windows Remote Desktop Client Information Disclosure vulnerability (CVE-2026-58539) was added to Microsoft’s security update guidance. Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58540

Windows Installer Elevation of Privilege vulnerability

Windows Installer Elevation of Privilege vulnerability (CVE-2026-58540) was added to Microsoft’s security update guidance. Improper authorization in Windows Installer allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58541

Microsoft DWM Core Library Elevation of Privilege vulnerability

Microsoft DWM Core Library Elevation of Privilege vulnerability (CVE-2026-58541) was added to Microsoft’s security update guidance. Access of resource using incompatible type ('type confusion') in Windows DWM allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58542

Windows Media Remote Code Execution vulnerability

Windows Media Remote Code Execution vulnerability (CVE-2026-58542) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58544

Windows Management Services Elevation of Privilege vulnerability

Windows Management Services Elevation of Privilege vulnerability (CVE-2026-58544) was added to Microsoft’s security update guidance. Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58545

Windows Kernel Security Feature Bypass vulnerability

Windows Kernel Security Feature Bypass vulnerability (CVE-2026-58545) was added to Microsoft’s security update guidance. Improper access control in Windows Kernel allows an authorized attacker to bypass a security feature locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58546

Windows Remote Desktop Client Information Disclosure vulnerability

Windows Remote Desktop Client Information Disclosure vulnerability (CVE-2026-58546) was added to Microsoft’s security update guidance. Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58547

Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege vulnerability

Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege vulnerability (CVE-2026-58547) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Universal Plug and Play (upnp.dll) allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58613

Windows Cloud Files Mini Filter Driver Elevation of Privilege vulnerability

Windows Cloud Files Mini Filter Driver Elevation of Privilege vulnerability (CVE-2026-58613) was added to Microsoft’s security update guidance. Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58619

Windows Sensor Data Service Elevation of Privilege vulnerability

Windows Sensor Data Service Elevation of Privilege vulnerability (CVE-2026-58619) was added to Microsoft’s security update guidance. Use after free in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58626

Windows Remote Desktop Services Remote Code Execution vulnerability

Windows Remote Desktop Services Remote Code Execution vulnerability (CVE-2026-58626) was added to Microsoft’s security update guidance. Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58627

Windows DHCP Server Denial of Service vulnerability

Windows DHCP Server Denial of Service vulnerability (CVE-2026-58627) was added to Microsoft’s security update guidance. Uncontrolled resource consumption in Windows DHCP Server allows an unauthorized attacker to deny service over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58628

Windows Wireless Network Manager Elevation of Privilege vulnerability

Windows Wireless Network Manager Elevation of Privilege vulnerability (CVE-2026-58628) was added to Microsoft’s security update guidance. Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Wireless Networking allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58632

Windows Win32 Kernel Subsystem Elevation of Privilege vulnerability

Windows Win32 Kernel Subsystem Elevation of Privilege vulnerability (CVE-2026-58632) was added to Microsoft’s security update guidance. Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58637

Windows Client-Side Caching Elevation of Privilege vulnerability

Windows Client-Side Caching Elevation of Privilege vulnerability (CVE-2026-58637) was added to Microsoft’s security update guidance. Use after free in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58638

Windows Boot Loader Security Feature Bypass vulnerability

Windows Boot Loader Security Feature Bypass vulnerability (CVE-2026-58638) was added to Microsoft’s security update guidance. Missing cryptographic step in Windows Boot Loader allows an authorized attacker to bypass a security feature locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58525

Microsoft Edge (Chromium-based) Security Feature Bypass vulnerability

Microsoft Edge (Chromium-based) Security Feature Bypass vulnerability (CVE-2026-58525) was added to Microsoft’s security update guidance. Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58299

Microsoft Edge for Android Remote Code Execution vulnerability

Microsoft Edge for Android Remote Code Execution vulnerability (CVE-2026-58299) was added to Microsoft’s security update guidance. Time-of-check time-of-use (toctou) race condition in Microsoft Edge for Android allows an unauthorized attacker to execute code over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58300

Microsoft Edge for Android Information Disclosure vulnerability

Microsoft Edge for Android Information Disclosure vulnerability (CVE-2026-58300) was added to Microsoft’s security update guidance. Absolute path traversal in Microsoft Edge for Android allows an unauthorized attacker to disclose information locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58522

Microsoft Edge for Android Information Disclosure vulnerability

Microsoft Edge for Android Information Disclosure vulnerability (CVE-2026-58522) was added to Microsoft’s security update guidance. Relative path traversal in Microsoft Edge for Android allows an unauthorized attacker to disclose information locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58523

Microsoft Edge for Android Security Feature Bypass vulnerability

Microsoft Edge for Android Security Feature Bypass vulnerability (CVE-2026-58523) was added to Microsoft’s security update guidance. Improper access control in Microsoft Edge for Android allows an unauthorized attacker to bypass a security feature over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58524

Microsoft Edge (Chromium-based) Spoofing vulnerability

Microsoft Edge (Chromium-based) Spoofing vulnerability (CVE-2026-58524) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.