Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Microsoft Addresses 83 Security Vulnerabilities in March Update

Microsoft Addresses 83 Security Vulnerabilities in March Update

Posted on March 10, 2026 By CWS

Microsoft has rolled out updates addressing 83 security vulnerabilities in its March 2026 Patch Tuesday release. While none of these flaws have been identified as actively exploited, two have been publicly disclosed, according to the company’s advisories.

Publicly Disclosed Vulnerabilities

The disclosed vulnerabilities include CVE-2026-26127, a denial-of-service (DoS) issue in .NET, and CVE-2026-21262, an elevation of privilege flaw in SQL Server. Experts, including Tenable’s Satnam Narang, suggest these flaws are not easily exploitable. The DoS vulnerability requires prior authorization, and the privilege escalation bug is also considered low-risk.

Critical Vulnerabilities and Mitigations

The update addresses a critical-severity vulnerability, CVE-2026-21536, with a CVSS score of 9.8. This remote code execution flaw in the Devices Pricing Program has been mitigated by Microsoft, needing no further action from users. Another notable issue is CVE-2026-26118, an elevation of privilege defect in Azure MCP Server Tools, which could be exploited through malicious input.

Additional Patch Details

Narang also highlights potential concerns regarding privilege escalation issues in Windows components such as Graphics Component, Accessibility Infrastructure, Kernel, SMB Server, and Winlogon. Tyler Reguly from Fortra emphasizes the importance of secure asset management, particularly in cloud systems where five Azure vulnerabilities were patched, including an elevation of privilege in Azure Linux Virtual Machines and vulnerabilities in Azure IoT Explorer.

Alongside these, Microsoft has addressed 10 non-Microsoft CVEs, with fixes for Microsoft Semantic Kernel Python SDK and several in Microsoft Edge, which is Chromium-based.

Looking Ahead

Security experts advise Chief Security Officers (CSOs) to maintain comprehensive asset inventories to ensure timely patch deployment. As Microsoft continues to enhance its security measures, staying informed on these updates is crucial for IT teams. Concurrently, Adobe has released fixes for 80 vulnerabilities in its products, highlighting a continued industry-wide focus on cybersecurity.

Security Week News Tags:Azure, CVE, Cybersecurity, Microsoft, Patch Tuesday, remote code execution, security update, SQL Server, Vulnerabilities, Windows

Post navigation

Previous Post: FortiGate Firewalls Exploited by Cyber Attackers
Next Post: Fortinet Patches Critical Vulnerabilities in Key Products

Related Posts

1.4 Million Accounts Disrupted in Major Cybercrime Bust 1.4 Million Accounts Disrupted in Major Cybercrime Bust Security Week News
Global Action Cleans 15,000 WordPress Sites of Malware Global Action Cleans 15,000 WordPress Sites of Malware Security Week News
RegScale Raises  Million for GRC Platform RegScale Raises $30 Million for GRC Platform Security Week News
Global Action Cleans 15,000 WordPress Sites of Malware Armored Likho APT Threatens Global Government Sectors Security Week News
DirtyDecrypt Vulnerability Exposes Linux Kernel Risk DirtyDecrypt Vulnerability Exposes Linux Kernel Risk Security Week News
Two New Web Application Risk Categories Added to OWASP Top 10 Two New Web Application Risk Categories Added to OWASP Top 10 Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Critical Foxit Vulnerability Allows SYSTEM Privilege Escalation
  • Critical Bing Images Flaws Patched Amid Security Concerns
  • Certighost Flaw in AD CS Allows Domain Compromise
  • Tego AI Reveals Second Security Issue in Claude Software
  • SourTrade Malvertising Evades Detection with Unique Malware

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Critical Foxit Vulnerability Allows SYSTEM Privilege Escalation
  • Critical Bing Images Flaws Patched Amid Security Concerns
  • Certighost Flaw in AD CS Allows Domain Compromise
  • Tego AI Reveals Second Security Issue in Claude Software
  • SourTrade Malvertising Evades Detection with Unique Malware

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark