Close Menu

    Subscribe to Updates

    Get the latest Tech news from SynapseFlow

    What's Hot

    Ceva Logistics Operations Disrupted by Cyberattack

    August 12, 2026

    The Original Full Disclosure Mailing List Is Live Again – NextBigFuture.com

    August 12, 2026

    Sony’s Wolverine PS5 has literal claw marks ripped through its shell

    August 12, 2026
    Facebook X (Twitter) Instagram
    • Homepage
    • About Us
    • Contact Us
    • Privacy Policy
    Facebook X (Twitter) Instagram YouTube
    synapseflow.co.uksynapseflow.co.uk
    • AI News & Updates
    • Cybersecurity
    • Future Tech
    • Reviews
    • Software & Apps
    • Tech Gadgets
    synapseflow.co.uksynapseflow.co.uk
    Home»Cybersecurity»August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day
    August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day
    Cybersecurity

    August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day

    The Tech GuyBy The Tech GuyAugust 11, 2026No Comments3 Mins Read0 Views
    Share
    Facebook Twitter LinkedIn Pinterest Email
    Advertisement


    Microsoft on Tuesday announced patches for 421 CVEs, including a high-severity vulnerability that has been exploited in the wild as a zero-day.

    Advertisement

    The exploited flaw, tracked as CVE-2026-68820, is described as a use-after-free issue in Ancillary Function Driver for WinSock (afd.sys), the kernel-mode driver functioning as the backbone for the Windows Sockets API.

    Microsoft says threat actors have been exploiting the security defect to elevate their privileges to System, without sharing details on the observed attacks.

    “A locally authenticated attacker could run a specially crafted application on an affected system to trigger a race condition. Successful exploitation could allow the attacker to gain SYSTEM privileges. User interaction is not required,” the tech giant explains.

    According to Tenable senior staff research engineer Satnam Narang, based on historical tradecraft targeting afd.sys flaws, the CVE might have been exploited by nation-state threat actors.

    “Since 2022, there have been three other afd.sys zero-days exploited in the wild, including CVE-2025-32709, CVE-2025-21418, and CVE-2024-38193. CVE-2024-38193 was reportedly exploited by North Korean hackers linked to the Lazarus group,” Narang said.

    Advertisement. Scroll to continue reading.

    As part of the August 2026 Patch Tuesday release, Microsoft also drew attention to CVE-2026-62832, an improper link resolution before file access (link following) bug in Windows’s User Profile Service, which could allow attackers to elevate their privileges locally.

    “An authenticated attacker who has credentials for another local account could run a specially crafted application to load another user’s registry hive. Successful exploitation could allow the attacker to access or modify another user’s data and gain administrator privileges. User interaction is not required,” Microsoft says.

    The tech giant flagged the security defect as publicly disclosed and believes that threat actors are likely to start exploiting it in attacks.

    CVE-2026-72971, a link following in the Windows Container Isolation FS Filter Driver (unionfs.sys) that could lead to local tampering, was also flagged as publicly disclosed, but Microsoft believes it is unlikely to be exploited in the wild.

    Other flaws that defenders should pay attention to include CVE-2026-62878, CVE-2026-62893, CVE-2026-62815, and CVE-2026-59124, which are remote code execution (RCE) bugs in Windows DNS server, Windows Deployment Services TFTP server, Microsoft QUIC, and Microsoft HPC Pack, as well as CVE-2026-62911, an EoP in Exchange Server, ZDI’s Dustin Childs notes.

    In total, Microsoft’s August 2026 security updates resolve 236 vulnerabilities in Windows, 98 in Office, 98 in Office 2016, 30 in SharePoint Server, 26 in Developer Tools, 17 in Azure, 7 in Exchange Server, 1 in Defender, and 6 in other products.

    The updates also include fixes for two non-Microsoft CVEs, namely a spoofing bug (CVE-2026-6726) and an information disclosure issue (CVE-2026-6727) in the TPM 2.0 reference implementation.

    Related: Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws

    Related: Zoom Patches Zero-Click Code Execution Vulnerability

    Related: SAP Patches Critical Code Injection, Memory Corruption Vulnerabilities

    Related: Microsoft, Apple Release Fresh Security Updates

    Advertisement
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    The Tech Guy
    • Website

    Related Posts

    Ceva Logistics Operations Disrupted by Cyberattack

    August 12, 2026

    Cisco Patches Firewall Zero-Day Exploited for DoS Attacks

    August 12, 2026

    Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws

    August 11, 2026

    Extension Banned for Stealing AI Chats Returns to Chrome Store, Resumes Malicious Activities

    August 11, 2026

    Cisco Warns of High-Severity ClamAV Vulnerabilities With Public PoC

    August 11, 2026

    Stealthium Targets Security Blind Spots in AI Accelerators and Neo-Clouds

    August 10, 2026
    Leave A Reply Cancel Reply

    Advertisement
    Top Posts

    You don’t need a NAS to self-host — I proved it with hardware from my closet

    June 7, 2026391 Views

    Spotify is giving one of its best playlists a big visual upgrade to give subscribers ‘a closer connection’ to its New Music Friday curators — and I think it could be the update it’s always needed

    June 12, 2026210 Views

    The iPad Air brand makes no sense – it needs a rethink

    October 12, 202516 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Advertisement
    About Us
    About Us

    SynapseFlow brings you the latest updates in Technology, AI, and Gadgets from innovations and reviews to future trends. Stay smart, stay updated with the tech world every day!

    Our Picks

    Ceva Logistics Operations Disrupted by Cyberattack

    August 12, 2026

    The Original Full Disclosure Mailing List Is Live Again – NextBigFuture.com

    August 12, 2026

    Sony’s Wolverine PS5 has literal claw marks ripped through its shell

    August 12, 2026
    categories
    • AI News & Updates
    • Cybersecurity
    • Future Tech
    • Reviews
    • Software & Apps
    • Tech Gadgets
    Facebook X (Twitter) Instagram Pinterest YouTube Dribbble
    • Homepage
    • About Us
    • Contact Us
    • Privacy Policy
    © 2026 SynapseFlow All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.