CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Microsoft security advisory - August 2026 monthly rollup (AV26-804) - Update 2

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 5780

As cited

Copy frozen at (site build).

vulnerabilities

Microsoft security advisory - August 2026 monthly rollup (AV26-804) - Update 2

Microsoft released its August 2026 security advisory covering vulnerabilities across .NET, Office applications, Azure services, Windows Server, Teams, and multiple enterprise products. The advisory was updated twice: on August 18 to include two vulnerabilities added to CISA's Known Exploited Vulnerabilities database, and again on August 27 after open-source reporting indicated active exploitation of a SharePoint Server vulnerability in the wild.

Why it matters: Organizations running any of the affected Microsoft products (spanning .NET, Office, Azure, Windows Server, and enterprise services) need to prioritize patching CVE-2026-33824, CVE-2026-55040, and CVE-2026-63520, which are either actively exploited or already tracked by CISA as high-priority threats.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

Microsoft security advisory - August 2026 monthly rollup (AV26-804) - Update 2

Microsoft released its August 2026 security advisory covering vulnerabilities across .NET, Office applications, Azure services, Windows Server, Teams, and multiple enterprise products. The advisory was updated twice: on August 18 to include two vulnerabilities added to CISA's Known Exploited Vulnerabilities database, and again on August 27 after open-source reporting indicated active exploitation of a SharePoint Server vulnerability in the wild.

Why it matters: Organizations running any of the affected Microsoft products (spanning .NET, Office, Azure, Windows Server, and enterprise services) need to prioritize patching CVE-2026-33824, CVE-2026-55040, and CVE-2026-63520, which are either actively exploited or already tracked by CISA as high-priority threats.

CVEsCVE-2026-33824CVE-2026-50515CVE-2026-55040CVE-2026-57105CVE-2026-58639CVE-2026-58651CVE-2026-62827CVE-2026-62829CVE-2026-62836CVE-2026-62837CVE-2026-62839CVE-2026-62842CVE-2026-62882CVE-2026-62896CVE-2026-62917CVE-2026-62918CVE-2026-63512CVE-2026-63513CVE-2026-63514CVE-2026-63515CVE-2026-63516CVE-2026-63517CVE-2026-63518CVE-2026-63519CVE-2026-63520CVE-2026-63521CVE-2026-63524CVE-2026-63525CVE-2026-63526CVE-2026-63527CVE-2026-63528CVE-2026-63529CVE-2026-63530CVE-2026-63531CVE-2026-63532CVE-2026-63533CVE-2026-64897CVE-2026-64898CVE-2026-64899CVE-2026-64900CVE-2026-64901CVE-2026-64902CVE-2026-64903CVE-2026-64904CVE-2026-64905CVE-2026-64906CVE-2026-64907CVE-2026-64908CVE-2026-64909CVE-2026-64910CVE-2026-64911CVE-2026-64912CVE-2026-64914CVE-2026-64915CVE-2026-64916CVE-2026-64917CVE-2026-64919CVE-2026-64920CVE-2026-64921CVE-2026-64922CVE-2026-65656CVE-2026-65657CVE-2026-65658CVE-2026-65660CVE-2026-65661CVE-2026-65663CVE-2026-65664CVE-2026-65665CVE-2026-65667CVE-2026-65680CVE-2026-65767CVE-2026-65768CVE-2026-65769CVE-2026-65807CVE-2026-66805CVE-2026-66806CVE-2026-66807CVE-2026-66808CVE-2026-66809CVE-2026-66810CVE-2026-68792CVE-2026-68793CVE-2026-68794CVE-2026-68795CVE-2026-68796CVE-2026-68797CVE-2026-68798CVE-2026-68799CVE-2026-68800CVE-2026-68801CVE-2026-68802CVE-2026-68803CVE-2026-68804CVE-2026-68805CVE-2026-68806CVE-2026-68807CVE-2026-68808CVE-2026-68809CVE-2026-68810CVE-2026-68811CVE-2026-68812CVE-2026-68813CVE-2026-68814CVE-2026-68815CVE-2026-68816CVE-2026-68817CVE-2026-70130CVE-2026-70306CVE-2026-70310CVE-2026-70311CVE-2026-70312CVE-2026-70313CVE-2026-70314CVE-2026-70315CVE-2026-70316CVE-2026-70317CVE-2026-70318CVE-2026-70319CVE-2026-70320CVE-2026-70321CVE-2026-70322CVE-2026-70323CVE-2026-70324CVE-2026-70325CVE-2026-70326CVE-2026-70327CVE-2026-70328CVE-2026-70329CVE-2026-70332CVE-2026-70355
VendorsAppleGoogleKubernetesMicrosoft
Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

Microsoft security advisory - August 2026 monthly rollup (AV26-804) - Update 2

Microsoft released its August 2026 security advisory covering vulnerabilities across .NET, Office applications, Azure services, Windows Server, Teams, and multiple enterprise products. The advisory was updated twice: on August 18 to include two vulnerabilities added to CISA's Known Exploited Vulnerabilities database, and again on August 27 after open-source reporting indicated active exploitation of a SharePoint Server vulnerability in the wild.

Why it matters: Organizations running any of the affected Microsoft products (spanning .NET, Office, Azure, Windows Server, and enterprise services) need to prioritize patching CVE-2026-33824, CVE-2026-55040, and CVE-2026-63520, which are either actively exploited or already tracked by CISA as high-priority threats.

CVEsCVE-2026-33824CVE-2026-50515CVE-2026-55040CVE-2026-57105CVE-2026-58639CVE-2026-58651CVE-2026-62827CVE-2026-62829CVE-2026-62836CVE-2026-62837CVE-2026-62839CVE-2026-62842CVE-2026-62882CVE-2026-62896CVE-2026-62917CVE-2026-62918CVE-2026-63512CVE-2026-63513CVE-2026-63514CVE-2026-63515CVE-2026-63516CVE-2026-63517CVE-2026-63518CVE-2026-63519CVE-2026-63520CVE-2026-63521CVE-2026-63524CVE-2026-63525CVE-2026-63526CVE-2026-63527CVE-2026-63528CVE-2026-63529CVE-2026-63530CVE-2026-63531CVE-2026-63532CVE-2026-63533CVE-2026-64897CVE-2026-64898CVE-2026-64899CVE-2026-64900CVE-2026-64901CVE-2026-64902CVE-2026-64903CVE-2026-64904CVE-2026-64905CVE-2026-64906CVE-2026-64907CVE-2026-64908CVE-2026-64909CVE-2026-64910CVE-2026-64911CVE-2026-64912CVE-2026-64914CVE-2026-64915CVE-2026-64916CVE-2026-64917CVE-2026-64919CVE-2026-64920CVE-2026-64921CVE-2026-64922CVE-2026-65656CVE-2026-65657CVE-2026-65658CVE-2026-65660CVE-2026-65661CVE-2026-65663CVE-2026-65664CVE-2026-65665CVE-2026-65667CVE-2026-65680CVE-2026-65767CVE-2026-65768CVE-2026-65769CVE-2026-65807CVE-2026-66805CVE-2026-66806CVE-2026-66807CVE-2026-66808CVE-2026-66809CVE-2026-66810CVE-2026-68792CVE-2026-68793CVE-2026-68794CVE-2026-68795CVE-2026-68796CVE-2026-68797CVE-2026-68798CVE-2026-68799CVE-2026-68800CVE-2026-68801CVE-2026-68802CVE-2026-68803CVE-2026-68804CVE-2026-68805CVE-2026-68806CVE-2026-68807CVE-2026-68808CVE-2026-68809CVE-2026-68810CVE-2026-68811CVE-2026-68812CVE-2026-68813CVE-2026-68814CVE-2026-68815CVE-2026-68816CVE-2026-68817CVE-2026-70130CVE-2026-70306CVE-2026-70310CVE-2026-70311CVE-2026-70312CVE-2026-70313CVE-2026-70314CVE-2026-70315CVE-2026-70316CVE-2026-70317CVE-2026-70318CVE-2026-70319CVE-2026-70320CVE-2026-70321CVE-2026-70322CVE-2026-70323CVE-2026-70324CVE-2026-70325CVE-2026-70326CVE-2026-70327CVE-2026-70328CVE-2026-70329CVE-2026-70332CVE-2026-70355
VendorsAppleGoogleKubernetesMicrosoft
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary