Microsoft fixes 622 security holes for July

Date: Jul. 14, 2026    Categories: threats , updates

Security holes

Keep Microsoft Windows up-to-date

Microsoft’s July 2026 Patch Tuesday update revealed a much larger number of serious security problems than in recent months. So it is even more important to keep Microsoft Windows up-to-date.

This trend results from criminals finding many more serious flaws using artificial intelligence analysis tools.

This update includes 59 critical vulnerabilities and three publicly known zero-days. “Zero-days” are defects that hackers may know about before Microsoft has created fixes. Two of these zero-days are already being used in attacks.

#1 Zero-day: Windows Bitlocker

The first zero-day affects Windows BitLocker. It allows an attacker who steals a Bitlocker-protected computer to unlock the encrypted contents of the hard drive.

#2 Zero-day: Privilege elevation

The second zero-day allows a criminal who gains normal user access to elevate their privileges to the administrator level in Active Directory Federation Services (ADFS) used on business networks.

#3 SharePoint security hole

The third targets Microsoft SharePoint, widely used in law firms for storing client documents. It also allows an attacker to raise their privileges and to access network files everywhere.

The Cybersecurity and Infrastructure Security Agency added the actively exploited issues to its Known Exploited Vulnerabilities catalog. It urged federal agencies and others using SharePoint Server to apply hardening steps quickly.


Random: Loading...