Microsoft oggi corregge 206 vulnerabilità di sicurezza: dovresti aggiornare Windows adesso

Microsoft ha rilasciato il Patch Tuesday più grande di sempre che corregge ben 206 vulnerabilità di sicurezza, inclusi 3 zero-day.

Oggi Microsoft ha rilasciato il Patch Tuesday più grande di sempre, un aggiornamento imponente che corregge 206 vulnerabilità, inclusi 3 zero-day. Si tratta di un aggiornamento di sicurezza particolarmente importante. Proprio per questo dovresti attualizzare il tuo Windows all’ultima versione, quella più recente. Tra le 206 vulnerabilità ce ne sono 32 critiche.

  1. Nuance PowerScribe (CVE-2026-26142)
  2. Microsoft Azure Kubernetes Service (CVE-2026-32193)
  3. Microsoft Office SharePoint (CVE-2026-33113)
  4. Microsoft Azure Attestation service and Device Health Attestation Service (CVE-2026-33828)
  5. Windows Ancillary Function Driver for WinSock (CVE-2026-34335)
  6. Microsoft Dynamics 365 (on-premises) (CVE-2026-40371)
  7. Visual Studio Code (CVE-2026-40376)
  8. Windows Universal Disk Format File System Driver (UDFS) (CVE-2026-40404)
  9. Windows Universal Disk Format File System Driver (UDFS) (CVE-2026-40409)
  10. Microsoft Kinect (CVE-2026-41092)
  11. Azure Stack Edge (CVE-2026-41098)
  12. Microsoft Windows DNS (CVE-2026-41108)
  13. M365 Copilot (CVE-2026-42824)
  14. Windows Projected File System Filter Driver (CVE-2026-42828)
  15. Windows Administrator Protection (CVE-2026-42829)
  16. Microsoft Teams for Android (CVE-2026-42835)
  17. Function Discovery Service (fdwsd.dll) (CVE-2026-42836)
  18. Windows Projected File System Filter Driver (CVE-2026-42837)
  19. Microsoft PowerToys (CVE-2026-42902)
  20. Windows Kerberos (CVE-2026-42903)
  21. Windows TCP/IP (CVE-2026-42904)
  22. Windows DWM Core Library (CVE-2026-42905)
  23. Windows Shell (CVE-2026-42906)
  24. Windows Shell (CVE-2026-42907)
  25. Windows RDP (CVE-2026-42908)
  26. Remote Desktop Client (CVE-2026-42909)
  27. Windows Hotpatch Monitoring Service (CVE-2026-42910)
  28. Windows Ancillary Function Driver for WinSock (CVE-2026-42911)
  29. Windows Telephony Service (CVE-2026-42912)
  30. Remote Desktop Client (CVE-2026-42913)
  31. Windows Kerberos (CVE-2026-42914)
  32. Windows TCP/IP (CVE-2026-42915)
  33. Windows NT OS Kernel (CVE-2026-42916)
  34. Windows Telephony Service (CVE-2026-42968)
  35. Windows Push Notifications (CVE-2026-42969)
  36. Windows Push Notifications (CVE-2026-42970)
  37. Windows Push Notifications (CVE-2026-42971)
  38. Role: Windows Hyper-V (CVE-2026-42972)
  39. Windows Push Notifications (CVE-2026-42973)
  40. Windows Performance Monitor (CVE-2026-42974)
  41. Windows Push Notifications (CVE-2026-42977)
  42. Windows Push Notifications (CVE-2026-42978)
  43. Windows Push Notifications (CVE-2026-42979)
  44. Windows NT OS Kernel (CVE-2026-42980)
  45. Windows Performance Monitor (CVE-2026-42981)
  46. Windows DWM Core Library (CVE-2026-42983)
  47. Windows Kernel (CVE-2026-42984)
  48. Remote Desktop Client (CVE-2026-42985)
  49. Microsoft Graphics Component (CVE-2026-42986)
  50. Windows Deployment Services (CVE-2026-42987)
  51. Winlogon (CVE-2026-42989)
  52. Windows Push Notifications (CVE-2026-42991)
  53. Remote Desktop Client (CVE-2026-42992)
  54. Remote Desktop Client (CVE-2026-42993)
  55. Remote Desktop Client (CVE-2026-44799)
  56. Remote Desktop Client (CVE-2026-44801)
  57. Windows DWM Core Library (CVE-2026-44802)
  58. Windows Win32K – GRFX (CVE-2026-44803)
  59. Windows DWM Core Library (CVE-2026-44804)
  60. Windows Network Controller (NC) Host Agent (CVE-2026-44805)
  61. Windows DWM Core Library (CVE-2026-44807)
  62. Windows DWM Core Library (CVE-2026-44808)
  63. Windows Common Log File System Driver (CVE-2026-44809)
  64. Windows Cryptographic Services (CVE-2026-44810)
  65. Windows DWM Core Library (CVE-2026-44811)
  66. Windows Win32K – GRFX (CVE-2026-44812)
  67. Windows DWM Core Library (CVE-2026-44813)
  68. Windows DWM Core Library (CVE-2026-44814)
  69. Windows DHCP Client (CVE-2026-44815)
  70. Microsoft Office Excel (CVE-2026-44817)
  71. Microsoft Office Excel (CVE-2026-44818)
  72. Microsoft Office (CVE-2026-44819)
  73. Microsoft Office Excel (CVE-2026-44820)
  74. Microsoft Office (CVE-2026-44821)
  75. Microsoft Office Excel (CVE-2026-44822)
  76. Microsoft Office Excel (CVE-2026-44823)
  77. Microsoft Office (CVE-2026-44824)
  78. Microsoft Office SharePoint (CVE-2026-45453)
  79. Microsoft Office SharePoint (CVE-2026-45454)
  80. Microsoft Office Excel (CVE-2026-45455)
  81. Microsoft Office (CVE-2026-45456)
  82. Microsoft Office Word (CVE-2026-45457)
  83. Microsoft Office (CVE-2026-45458)
  84. Microsoft Office Excel (CVE-2026-45459)
  85. Microsoft Office (CVE-2026-45460)
  86. Microsoft Office (CVE-2026-45461)
  87. Microsoft Office SharePoint (CVE-2026-45462)
  88. Microsoft Office (CVE-2026-45463)
  89. Microsoft Office SharePoint (CVE-2026-45464)
  90. Microsoft Office SharePoint (CVE-2026-45465)
  91. Microsoft Office Word (CVE-2026-45466)
  92. Microsoft Office SharePoint (CVE-2026-45467)
  93. Microsoft Office SharePoint (CVE-2026-45468)
  94. Microsoft Office Excel (CVE-2026-45469)
  95. Microsoft Office Word (CVE-2026-45471)
  96. Microsoft Office (CVE-2026-45472)
  97. Microsoft Office (CVE-2026-45474)
  98. Microsoft Office (CVE-2026-45475)
  99. Linux MANA Driver (CVE-2026-45476)
  100. Microsoft Office SharePoint (CVE-2026-45479)
  101. Microsoft Office SharePoint (CVE-2026-45481)
  102. GitHub Copilot and Visual Studio Code (CVE-2026-45482)
  103. Microsoft Office Project (CVE-2026-45483)
  104. Microsoft Office SharePoint (CVE-2026-45484)
  105. Microsoft Office (CVE-2026-45485)
  106. Microsoft Office Word (CVE-2026-45486)
  107. Windows Program Compatibility Assistant Service (CVE-2026-45487)
  108. .NET (CVE-2026-45490)
  109. .NET (CVE-2026-45491)
  110. Microsoft Copilot (CVE-2026-45497)
  111. Microsoft Exchange Server (CVE-2026-45500)
  112. Microsoft Exchange Server (CVE-2026-45501)
  113. Microsoft Exchange Server (CVE-2026-45502)
  114. Microsoft Exchange Server (CVE-2026-45503)
  115. Microsoft Exchange Server (CVE-2026-45504)
  116. Microsoft Exchange Server (CVE-2026-45583)
  117. Windows Collaborative Translation Framework (CVE-2026-45586)
  118. Windows Secure Boot (CVE-2026-45588)
  119. ASP.NET Core (CVE-2026-45591)
  120. Windows Internet (wininet.dll) (CVE-2026-45592)
  121. Windows SDK (CVE-2026-45593)
  122. Windows Application Identity (AppID) Subsystem (CVE-2026-45594)
  123. Windows Mark of the Web (MOTW) (CVE-2026-45595)
  124. Windows Ancillary Function Driver for WinSock (CVE-2026-45596)
  125. UI Automation Manager (uiamanager.dll) (CVE-2026-45597)
  126. Windows Ancillary Function Driver for WinSock (CVE-2026-45598)
  127. Universal Plug and Play (upnp.dll) (CVE-2026-45599)
  128. Windows Kernel-Mode Drivers (CVE-2026-45600)
  129. Windows Ancillary Function Driver for WinSock (CVE-2026-45601)
  130. Windows DHCP Server (CVE-2026-45602)
  131. Windows Ancillary Function Driver for WinSock (CVE-2026-45603)
  132. Windows Application Identity (AppID) Subsystem (CVE-2026-45604)
  133. Windows Bluetooth Service (CVE-2026-45605)
  134. Microsoft UxTheme Library (uxtheme.dll) (CVE-2026-45606)
  135. Windows Hyper-V (CVE-2026-45607)
  136. Windows DHCP Client (CVE-2026-45608)
  137. Windows DHCP Server (CVE-2026-45634)
  138. Universal Plug and Play (upnp.dll) (CVE-2026-45635)
  139. Windows NTFS (CVE-2026-45636)
  140. Windows DWM Core Library (CVE-2026-45637)
  141. Windows Ancillary Function Driver for WinSock (CVE-2026-45638)
  142. Windows RDP (CVE-2026-45639)
  143. Windows Bluetooth Port Driver (CVE-2026-45640)
  144. Role: Windows Hyper-V (CVE-2026-45641)
  145. Microsoft Azure Attestation service and Device Health Attestation Service (CVE-2026-45642)
  146. Microsoft Office Word (CVE-2026-45643)
  147. Microsoft Live Share Canvas SDK (CVE-2026-45644)
  148. Microsoft Office (CVE-2026-45645)
  149. Microsoft Defender for Endpoint (CVE-2026-45647)
  150. Active Directory Domain Services (CVE-2026-45648)
  151. Office for Android (CVE-2026-45649)
  152. Microsoft Bing (CVE-2026-45650)
  153. Windows Kernel (CVE-2026-45653)
  154. Windows Secure Boot (CVE-2026-45654)
  155. Windows BitLocker (CVE-2026-45655)
  156. Windows UEFI (CVE-2026-45656)
  157. Windows Kernel (CVE-2026-45657)
  158. Windows BitLocker (CVE-2026-45658)
  159. Visual Studio Code (CVE-2026-47281)
  160. Visual Studio Code (CVE-2026-47284)
  161. Visual Studio Code (CVE-2026-47287)
  162. Windows Kerberos (CVE-2026-47288)
  163. Remote Desktop Client (CVE-2026-47289)
  164. Windows HTTP.sys (CVE-2026-47291)
  165. Visual Studio Code (CVE-2026-47292)
  166. Microsoft Office Click-To-Run (CVE-2026-47293)
  167. Microsoft Office SharePoint (CVE-2026-47298)
  168. Microsoft Exchange Server (CVE-2026-47631)
  169. Microsoft Office SharePoint (CVE-2026-47634)
  170. Microsoft Office (CVE-2026-47635)
  171. Microsoft Office SharePoint (CVE-2026-47636)
  172. Microsoft Office SharePoint (CVE-2026-47637)
  173. Microsoft Office SharePoint (CVE-2026-47638)
  174. Microsoft Office SharePoint (CVE-2026-47639)
  175. Microsoft Office SharePoint (CVE-2026-47640)
  176. Microsoft Office SharePoint (CVE-2026-47641)
  177. Azure Stack Edge (CVE-2026-47643)
  178. Copilot Chat (Microsoft Edge) (CVE-2026-47644)
  179. Windows Storage (CVE-2026-47648)
  180. Windows Hyper-V (CVE-2026-47652)
  181. Remote Desktop Client (CVE-2026-47653)
  182. Remote Desktop Client (CVE-2026-47654)
  183. Microsoft Graph (CVE-2026-47655)
  184. Windows Boot Manager (CVE-2026-47656)
  185. Microsoft Office SharePoint (CVE-2026-48560)
  186. Microsoft Office SharePoint (CVE-2026-48562)
  187. Remote Desktop Client (CVE-2026-48563)
  188. Windows Narrator Braille (CVE-2026-48565)
  189. Windows DWM Core Library (CVE-2026-48566)
  190. Azure HorizonDB (CVE-2026-48567)
  191. Windows Secure Boot (CVE-2026-48568)
  192. Visual Studio Code (CVE-2026-48569)
  193. Windows Secure Boot (CVE-2026-48570)
  194. Windows Secure Boot (CVE-2026-48573)
  195. Windows Media (CVE-2026-48574)
  196. Windows Secure Boot (CVE-2026-48575)
  197. Windows Secure Boot (CVE-2026-48576)
  198. Windows Secure Boot (CVE-2026-48578)
  199. Microsoft Exchange Online (CVE-2026-48579)
  200. Windows Kernel (CVE-2026-48583)
  201. HTTP/2 (CVE-2026-49160)
  202. Microsoft PC Manager (CVE-2026-49161)
  203. Windows BitLocker (CVE-2026-50507)
  204. Windows NTLM (CVE-2026-50508)
  205. Windows Kernel (CVE-2025-10263)
  206. Windows UEFI (CVE-2026-8863)

Tra le 206 vulnerabilità corrette da Microsoft una è stata resa pubblica

Gli esperti di Malwarebytes hanno precisato che, tra le 206 vulnerabilità corrette da Microsoft, una è stata resa pubblica. Si tratta di una falla in Windows BitLocker identificata come  CVE-2026-50507 (punteggio CVSS : 6,8 su 10). “Un malfunzionamento del meccanismo di protezione di Windows BitLocker consente a un utente malintenzionato non autorizzato di aggirare una funzionalità di sicurezza tramite un attacco fisico“, spiega la descrizione.

Fonte: Microsoft

Ti consigliamo anche

Link copiato negli appunti