Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Microsoft Addresses 83 Security Vulnerabilities in March Update

Microsoft Addresses 83 Security Vulnerabilities in March Update

Posted on March 10, 2026 By CWS

Microsoft has rolled out updates addressing 83 security vulnerabilities in its March 2026 Patch Tuesday release. While none of these flaws have been identified as actively exploited, two have been publicly disclosed, according to the company’s advisories.

Publicly Disclosed Vulnerabilities

The disclosed vulnerabilities include CVE-2026-26127, a denial-of-service (DoS) issue in .NET, and CVE-2026-21262, an elevation of privilege flaw in SQL Server. Experts, including Tenable’s Satnam Narang, suggest these flaws are not easily exploitable. The DoS vulnerability requires prior authorization, and the privilege escalation bug is also considered low-risk.

Critical Vulnerabilities and Mitigations

The update addresses a critical-severity vulnerability, CVE-2026-21536, with a CVSS score of 9.8. This remote code execution flaw in the Devices Pricing Program has been mitigated by Microsoft, needing no further action from users. Another notable issue is CVE-2026-26118, an elevation of privilege defect in Azure MCP Server Tools, which could be exploited through malicious input.

Additional Patch Details

Narang also highlights potential concerns regarding privilege escalation issues in Windows components such as Graphics Component, Accessibility Infrastructure, Kernel, SMB Server, and Winlogon. Tyler Reguly from Fortra emphasizes the importance of secure asset management, particularly in cloud systems where five Azure vulnerabilities were patched, including an elevation of privilege in Azure Linux Virtual Machines and vulnerabilities in Azure IoT Explorer.

Alongside these, Microsoft has addressed 10 non-Microsoft CVEs, with fixes for Microsoft Semantic Kernel Python SDK and several in Microsoft Edge, which is Chromium-based.

Looking Ahead

Security experts advise Chief Security Officers (CSOs) to maintain comprehensive asset inventories to ensure timely patch deployment. As Microsoft continues to enhance its security measures, staying informed on these updates is crucial for IT teams. Concurrently, Adobe has released fixes for 80 vulnerabilities in its products, highlighting a continued industry-wide focus on cybersecurity.

Security Week News Tags:Azure, CVE, Cybersecurity, Microsoft, Patch Tuesday, remote code execution, security update, SQL Server, Vulnerabilities, Windows

Post navigation

Previous Post: FortiGate Firewalls Exploited by Cyber Attackers
Next Post: Fortinet Patches Critical Vulnerabilities in Key Products

Related Posts

364,000 Impacted by Data Breach at LexisNexis Risk Solutions 364,000 Impacted by Data Breach at LexisNexis Risk Solutions Security Week News
Over 6,700 Private Repositories Made Public in Nx Supply Chain Attack Over 6,700 Private Repositories Made Public in Nx Supply Chain Attack Security Week News
High-Value NPM Developers Compromised in New Phishing Campaign High-Value NPM Developers Compromised in New Phishing Campaign Security Week News
Taming the Hacker Storm: Why Millions in Cybersecurity Spending Isn’t Enough Taming the Hacker Storm: Why Millions in Cybersecurity Spending Isn’t Enough Security Week News
Top Risks Boards Must Prioritize in 2026 Top Risks Boards Must Prioritize in 2026 Security Week News
Oracle’s First 2026 CPU Delivers 337 New Security Patches Oracle’s First 2026 CPU Delivers 337 New Security Patches Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • OpenAI Launches Bio Bug Bounty for GPT-5.5 AI Safety
  • China’s GopherWhisper APT Exploits Legitimate Services
  • Early Cyber Weapon ‘fast16’ Revealed by Researchers
  • Microsoft Fixes Vulnerability in Entra Agent ID Administration
  • CISA Highlights New Security Flaws, Sets 2026 Deadline

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • OpenAI Launches Bio Bug Bounty for GPT-5.5 AI Safety
  • China’s GopherWhisper APT Exploits Legitimate Services
  • Early Cyber Weapon ‘fast16’ Revealed by Researchers
  • Microsoft Fixes Vulnerability in Entra Agent ID Administration
  • CISA Highlights New Security Flaws, Sets 2026 Deadline

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark