Feed›Vulnerability›Microsoft releases Windows security update addressing 723 fl...
VulnerabilityCyber Insider
7.8 — HIGH

Microsoft releases Windows security update addressing 723 flaws

📅 8 September 2026 at 19:36 UTC📰 Cyber InsiderView original source ↗
Microsoft releases Windows security update addressing 723 flaws

Microsoft has released its September 2026 security updates, fixing two Windows elevation-of-privilege vulnerabilities that attackers are already exploiting in the wild. The company’s broader Patch Tuesday release addresses 974 CVEs across its products, including 723 affecting Windows. The two actively exploited flaws are tracked as CVE-2026-85880 and CVE-2026-81963. Microsoft says neither vulnerability was publicly disclosed … The post Microsoft releases Windows security update addressing 723 flaws appeared first on CyberInsider.

🤖 AI BriefingAuto-generated threat analysis
🔍Threat Overview

Microsoft has released a security update addressing two Windows elevation-of-privilege vulnerabilities, CVE-2026-85880 and CVE-2026-81963, which are being actively exploited in the wild. The update fixes 723 of the 974 CVEs addressed across Microsoft products.

⚙️Technical Details
CVEs
CVE-2026-85880CVE-2026-81963
Affected Systems
Microsoft Windows 10 1607Microsoft Windows 10 1809Microsoft Windows 10 21H2Microsoft Windows 10 22H2Microsoft Windows Server 2012Microsoft Windows 11 23H2Microsoft Windows 11 24H2Microsoft Windows 11 25H2Microsoft Windows 11 26H1Microsoft Windows Server 2025
Attack Vectors
LOCAL
💥Impact Assessment
Severity: critical
Who Is at Risk
Users running affected systems, including those with low-privileged access
🛡️Recommended Actions
1Install the September security update as soon as practical
2Back up important data to reduce risk of data loss from installation errors or unexpected power loss
3Consider upgrading to a supported Windows release before October 13, 2026
📦Affected Products
Microsoft Windows 10 1607Microsoft Windows 10 1809Microsoft Windows 10 21H2Microsoft Windows 10 22H2Microsoft Windows Server 2012Microsoft Windows Server 2016Microsoft Windows Server 2019Microsoft Windows Server 2022Microsoft Windows 11 23H2Microsoft Windows 11 24H2
🔐NVD Verified DataVERIFIED
CVE-2026-85880 ↗CVSS 7.8 — HIGH
Attack Vector
LOCAL
Complexity
LOW
Vector String
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-908CWE-122
Affected Products (CPE)
Microsoft Windows 10 1607Microsoft Windows 10 1809Microsoft Windows 10 21H2Microsoft Windows 10 22H2Microsoft Windows Server 2012
CVE-2026-81963 ↗CVSS 7.8 — HIGH
Attack Vector
LOCAL
Complexity
LOW
Vector String
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-59CWE-284
Affected Products (CPE)
Microsoft Windows 11 23H2Microsoft Windows 11 24H2Microsoft Windows 11 25H2Microsoft Windows 11 26H1Microsoft Windows Server 2025

Read the full article

This is a curated summary. The complete article is available at Cyber Insider.

Read on Cyber Insider ↗
← Back to feed