Microsoft Patch Tuesday

This month's Microsoft Security Update Guide release: severity and exploitation dashboards, a searchable CVE browser, and a downloadable brief.

Browse This Release's CVEs

Severity
Exploitation

1 of 448 CVEs match the current filters, sorted by EVULNABLE Risk.

CVEs in this Patch Tuesday release matching the current filters, ranked by EVULNABLE Risk Score
CVE TitleMSRC severity EVRS CVSS EPSS KEV Actively Exploited Product(s)
CVE-2026-70341 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Not rated 2 Informational No No
Download filtered CVEs (CSV) Patch Tuesday Brief (PDF)

The CSV is exactly the 1 CVE(s) matching the filters above. The PDF is the full leadership brief — at-a-glance summary, Patch First spotlight, top affected products, and the complete per-CVE inventory — not filtered to what is shown here.

CVE detail

Expand any CVE for its description, EVRS score breakdown, and affected products.

CVE-2026-70341 — Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Not stated

EVULNABLE Risk · priority 2/100 Informational Intelligence coverage 60/100 — no CVSS vector published, no EPSS score, no ransomware association data, no CISA KEV listing date

Recommended priority: Monitor

Why this score: Microsoft Exploitability Index: Exploitation Unlikely.

Exploitation status: Neither

Microsoft Exploitability Index: Exploitation Unlikely

CVSS base score: Not provided

FIRST EPSS: Not provided — probability of exploitation in the next 30 days, with its rank across all scored CVEs

CISA KEV: Not currently listed

Affected product(s): Not stated

Data sources & attribution

Known-exploitation status, required actions, ransomware association and remediation deadlines come from the CISA Known Exploited Vulnerabilities Catalog. Exploitation probability and percentile are provided by FIRST.org's EPSS, used under FIRST's open data terms.

Microsoft Patch Tuesday data is sourced from the Microsoft Security Update Guide; lifecycle milestones from endoflife.date. Linux distribution advisories come from Red Hat, Ubuntu and Debian; vendor bulletins from Adobe, Apple, Chrome, Cisco, Ivanti and Oracle, each linked to its own advisory.