CVE Tools

Microsoft Plugs Nearly 400 Security Holes

Krebs on SecurityBy BrianKrebs

Reported exploitedWindows

Our summary

Microsoft released its August security updates, addressing 398 vulnerabilities across Windows and other supported software, with one flaw under active exploitation and two previously publicly disclosed issues. The critical vulnerability CVE-2026-68820 allows privilege escalation through a race condition in the afd.sys driver, while CVE-2026-62832 targets the User Profile Service. Users should apply these patches promptly to secure their systems against ongoing threats.

Read at Krebs on Security

Krebs on Security publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store