On Thursday, technology giants Microsoft and Apple announced significant security updates, addressing multiple vulnerabilities in their products. These updates aim to enhance security and protect users from potential exploits.
Microsoft Addresses Critical Vulnerabilities
Leading the charge, Microsoft released patches for over a dozen vulnerabilities affecting products like Active Directory, Azure, Entra, SharePoint, and Teams. Among the fixes are critical-severity remote code execution (RCE) vulnerabilities, a top priority for the company.
Three particularly severe issues, CVE-2026-63508, CVE-2026-56162, and CVE-2026-65667, received the highest severity rating of 10/10. These vulnerabilities, found in Planetary Computer Pro, Azure SQL Database, and Teams, respectively, could lead to elevation of privilege (EoP) and are exploitable over networks.
Additionally, four other vulnerabilities, CVE-2026-50515, CVE-2026-62830, CVE-2026-59115, and CVE-2026-50481, with a CVSS score of 9.9/10, were addressed. These include RCE and EoP flaws in Azure Service Bus, Azure SRE Agent, Entra Provisioning Service, and Active Directory, all posing significant security risks.
Apple Releases Patch for Screen Sharing Flaw
Apple’s efforts focused on a single security bug, tracked as CVE-2026-65400, with a CVSS score of 7.5. This vulnerability potentially allows remote attackers to bypass Screen Sharing authentication without valid credentials.
The patch was included in updates for macOS Tahoe 26.6.1, macOS Sequoia 15.7.9, and macOS Sonoma 14.8.9. This update follows a previous release addressing dozens of security issues in iOS and macOS.
Ongoing Security Enhancements
These updates by Microsoft and Apple underscore the ongoing need for robust security measures in software development. The companies’ proactive approach in releasing these patches highlights the importance of staying vigilant against potential cyber threats.
The updates were preceded by other significant security efforts, including Microsoft’s earlier fixes for vulnerabilities in Office, 365 Apps for Enterprise, Edge, and Azure Cosmos DB. Keeping software up-to-date remains crucial for maintaining security.
As technology continues to evolve, both Microsoft and Apple remain committed to protecting their users by swiftly addressing vulnerabilities and releasing necessary updates. Users are encouraged to apply these patches promptly to ensure their systems remain secure.
