Microsoft released its August Patch Tuesday update, addressing 400 security flaws across its software ecosystem, according to Lifehacker. Other tallies cited by ZDNET placed the figure at 421 vulnerabilities. The release followed a record-shattering 570 flaws patched in July, maintaining a heavy volume of security updates over recent months.
August Patch Tuesday Addresses 400 Flaws and Three Zero-Days
The August fixes encompass a range of Microsoft products—including Windows 10, Windows 11 (versions 23H2, 24H2, and 25H2), Office, Exchange, Azure, and SharePoint—and address specific component updates such as File Explorer and Windows Hello, alongside touchpad control additions for laptops.
Breakdown of August Vulnerability Categories
According to reports from BleepingComputer cited by Lifehacker, the August security update covers several distinct vulnerability categories:
- Remote Code Execution (RCE): 110 vulnerabilities (with 37 rated critical out of 42 total critical bugs)
- Elevation of Privilege (EoP): 176 vulnerabilities
- Information Disclosure: 86 vulnerabilities
- Security Feature Bypass: 11 security feature bypass vulnerabilities
- Spoofing: 21 spoofing vulnerabilities
- Denial of Service (DoS): 12 denial-of-service vulnerabilities
Active Exploits and Critical Zero-Day Flaws
The August release includes three zero-day vulnerabilities. One of these has already been actively exploited in the wild, while the other two were publicly known prior to the update.
The actively exploited zero-day is designated as CVE-2026-68820, a use-after-free vulnerability located in the Windows Ancillary Function Driver for WinSock. According to Infosecurity Magazine, a locally authenticated attacker with low privileges can trigger a race condition using a specially crafted application to gain system privileges and extensive control over a target system. Patch management provider Action1 noted that while the flaw is rated Important rather than Critical, deployment should be prioritized because exploitation has been detected in the wild. Further analysis by The Tech Advocate indicated that this exploit was leveraged by the North Korean Lazarus Group.

The two additional zero-day flaws are:
- CVE-2026-62832: An Elevation of Privilege vulnerability in the Windows User Profile Service. Although not yet exploited in the wild, Microsoft stated that exploitation is more likely because the flaw was publicly known beforehand. It allows an authenticated local attacker with credentials for another local account to run a specially crafted application, load another user’s registry hive, modify data, and gain administrator privileges without user interaction.
- CVE-2026-72971: A Windows Container Isolation FS Filter Driver (unionfs.sys) tampering vulnerability involving improper link resolution before file access. Authorized local attackers can exploit it to load another user’s registry hive, access or modify data, and secure administrator privileges.
The Role of Artificial Intelligence in Finding and Fixing Flaws
The surge in security fixes is driven in large part by artificial intelligence. According to Lifehacker, threat actors are leveraging AI to develop and deploy hacking tools more rapidly and at scale, compelling tech companies to accelerate their patching cycles.

Simultaneously, engineering teams are utilizing AI to discover potential flaws prior to exploitation. Microsoft employs an internal multi-model agentic scanning harness codenamed MDASH to identify Windows vulnerabilities and reduce false positives. While AI is effective at finding vulnerabilities, reports note that it is less effective at patching them and can introduce additional bugs along the way.
Installation and Guidance for Windows Users
Mandatory Patch Tuesday updates typically download and install automatically on supported PCs around 10 a.m. on the second Tuesday of the month. Users can verify their update status or trigger an installation manually:
- Windows 11: Navigate to Start > Settings > Windows Update, click Check for updates, and reboot the PC.
- Windows 10: Users must be enrolled in the free Extended Security Updates (ESU) program, and can check via Settings > Update & Security > Windows Update.