Patch Tuesday
February 2026
On the second Tuesday of each month Microsoft, Adobe, SAP, Siemens and Schneider Electric publish in bulk; Oracle on the third Tuesday of January, April, July and October. Records published that day, from our own database, sorted by action score: KEV and mature exploits first.
How it is computed: CNA stamp + publication date (two-day window, UTC). No claim of a one-to-one match with the vendor bulletin; out-of-band updates land on other days.
137 records · 6 KEV
Affecting your stack
This month's records that match the products and versions in your stack.
Sign in to see the ones matching your stack; records and notifications are free. →
Microsoft · February 10
54 · 6 KEV · 1 critical| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
72This week | CVE-2026-21510Weaponized | Windows Shell Security Feature Bypass Vulnerabilitymicrosoft · windows 10 1607 · CWE-693 | High8.8 | KEV | 24.5% | Feb 10, 2026 |
70This week | CVE-2026-21513Weaponized | MSHTML Framework Security Feature Bypass Vulnerabilitymicrosoft · windows 10 1607 · CWE-693 | High8.8 | KEV | 15.9% | Feb 10, 2026 |
62This week | CVE-2026-21519Weaponized | Desktop Window Manager Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1607 · CWE-843 | High7.8 | KEV | 2.5% | Feb 10, 2026 |
62This week | CVE-2026-21533Weaponized | Windows Remote Desktop Services Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1607 · CWE-269 | High7.8 | KEV | 4.2% | Feb 10, 2026 |
61This week | CVE-2026-21514Weaponized | Microsoft Word Security Feature Bypass Vulnerabilitymicrosoft · 365 apps · CWE-807 | High7.8 | KEV | 1.6% | Feb 10, 2026 |
55Plan | CVE-2026-21525Weaponized | Windows Remote Access Connection Manager Denial of Service Vulnerabilitymicrosoft · windows 10 1607 · CWE-476 | Medium6.2 | KEV | 4.9% | Feb 10, 2026 |
40Plan | CVE-2026-21531Proof of concept | Azure SDK for Python Remote Code Execution Vulnerabilitymicrosoft · azure conversation authoring client library · CWE-502 | Critical9.8 | — | 2.6% | Feb 10, 2026 |
35Monitor | CVE-2026-21229No exploit | Power BI Remote Code Execution Vulnerabilitymicrosoft · power bi report server · CWE-20 | High8.8 | — | 1.0% | Feb 10, 2026 |
35Monitor | CVE-2026-21255No exploit | Windows Hyper-V Security Feature Bypass Vulnerabilitymicrosoft · windows 10 1607 · CWE-284 | High8.8 | — | 0.4% | Feb 10, 2026 |
35Monitor | CVE-2026-21256No exploit | GitHub Copilot and Visual Studio Remote Code Execution Vulnerabilitymicrosoft · visual studio 2022 · CWE-77 | High8.8 | — | 1.2% | Feb 10, 2026 |
35Monitor | CVE-2026-21518No exploit | GitHub Copilot and Visual Studio Code Security Feature Bypass Vulnerabilitymicrosoft · visual studio code · CWE-77 | High8.8 | — | 1.5% | Feb 10, 2026 |
35Monitor | CVE-2026-21537No exploit | Microsoft Defender for Endpoint Linux Extension Remote Code Execution Vulnerabilitymicrosoft · defender for endpoint · CWE-94 | High8.8 | — | 0.5% | Feb 10, 2026 |
- CVE-2026-2151072This week
Windows Shell Security Feature Bypass Vulnerability
HighCVSS 8.8KEVWeaponizedEPSS 25%microsoft · windows 10 1607Feb 10, 2026
- CVE-2026-2151370This week
MSHTML Framework Security Feature Bypass Vulnerability
HighCVSS 8.8KEVWeaponizedEPSS 16%microsoft · windows 10 1607Feb 10, 2026
- CVE-2026-2151962This week
Desktop Window Manager Elevation of Privilege Vulnerability
HighCVSS 7.8KEVWeaponizedEPSS 2%microsoft · windows 10 1607Feb 10, 2026
- CVE-2026-2153362This week
Windows Remote Desktop Services Elevation of Privilege Vulnerability
HighCVSS 7.8KEVWeaponizedEPSS 4%microsoft · windows 10 1607Feb 10, 2026
- CVE-2026-2151461This week
Microsoft Word Security Feature Bypass Vulnerability
HighCVSS 7.8KEVWeaponizedEPSS 2%microsoft · 365 appsFeb 10, 2026
- CVE-2026-2152555Plan
Windows Remote Access Connection Manager Denial of Service Vulnerability
MediumCVSS 6.2KEVWeaponizedEPSS 5%microsoft · windows 10 1607Feb 10, 2026
- CVE-2026-2153140Plan
Azure SDK for Python Remote Code Execution Vulnerability
CriticalCVSS 9.8Proof of conceptEPSS 3%microsoft · azure conversation authoring client libraryFeb 10, 2026
- CVE-2026-2122935Monitor
Power BI Remote Code Execution Vulnerability
HighCVSS 8.8No exploitEPSS 1%microsoft · power bi report serverFeb 10, 2026
- CVE-2026-2125535Monitor
Windows Hyper-V Security Feature Bypass Vulnerability
HighCVSS 8.8No exploitEPSS 0%microsoft · windows 10 1607Feb 10, 2026
- CVE-2026-2125635Monitor
GitHub Copilot and Visual Studio Remote Code Execution Vulnerability
HighCVSS 8.8No exploitEPSS 1%microsoft · visual studio 2022Feb 10, 2026
- CVE-2026-2151835Monitor
GitHub Copilot and Visual Studio Code Security Feature Bypass Vulnerability
HighCVSS 8.8No exploitEPSS 1%microsoft · visual studio codeFeb 10, 2026
- CVE-2026-2153735Monitor
Microsoft Defender for Endpoint Linux Extension Remote Code Execution Vulnerability
HighCVSS 8.8No exploitEPSS 1%microsoft · defender for endpointFeb 10, 2026
+42 moreAll records of the vendor
Adobe · February 10
44 · 0 KEV · 0 critical| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2026-21312No exploit | Audition | Out-of-bounds Write (CWE-787)adobe · audition · CWE-787 | High7.8 | — | 0.2% | Feb 10, 2026 |
31Monitor | CVE-2026-21318No exploit | After Effects | Out-of-bounds Write (CWE-787)adobe · after effects · CWE-787 | High7.8 | — | 0.2% | Feb 10, 2026 |
31Monitor | CVE-2026-21320No exploit | After Effects | Use After Free (CWE-416)adobe · after effects · CWE-416 | High7.8 | — | 0.3% | Feb 10, 2026 |
31Monitor | CVE-2026-21321No exploit | After Effects | Integer Overflow or Wraparound (CWE-190)adobe · after effects · CWE-190 | High7.8 | — | 0.2% | Feb 10, 2026 |
31Monitor | CVE-2026-21322No exploit | After Effects | Out-of-bounds Read (CWE-125)adobe · after effects · CWE-125 | High7.8 | — | 0.2% | Feb 10, 2026 |
31Monitor | CVE-2026-21323No exploit | After Effects | Use After Free (CWE-416)adobe · after effects · CWE-416 | High7.8 | — | 0.3% | Feb 10, 2026 |
31Monitor | CVE-2026-21324No exploit | After Effects | Out-of-bounds Read (CWE-125)adobe · after effects · CWE-125 | High7.8 | — | 0.2% | Feb 10, 2026 |
31Monitor | CVE-2026-21325No exploit | After Effects | Out-of-bounds Read (CWE-125)adobe · after effects · CWE-125 | High7.8 | — | 0.2% | Feb 10, 2026 |
31Monitor | CVE-2026-21326No exploit | After Effects | Use After Free (CWE-416)adobe · after effects · CWE-416 | High7.8 | — | 0.3% | Feb 10, 2026 |
31Monitor | CVE-2026-21327No exploit | After Effects | Out-of-bounds Write (CWE-787)adobe · after effects · CWE-787 | High7.8 | — | 0.2% | Feb 10, 2026 |
31Monitor | CVE-2026-21328No exploit | After Effects | Out-of-bounds Write (CWE-787)adobe · after effects · CWE-787 | High7.8 | — | 0.2% | Feb 10, 2026 |
31Monitor | CVE-2026-21329No exploit | After Effects | Use After Free (CWE-416)adobe · after effects · CWE-416 | High7.8 | — | 0.3% | Feb 10, 2026 |
- CVE-2026-2131231Monitor
Audition | Out-of-bounds Write (CWE-787)
HighCVSS 7.8No exploitEPSS 0%adobe · auditionFeb 10, 2026
- CVE-2026-2131831Monitor
After Effects | Out-of-bounds Write (CWE-787)
HighCVSS 7.8No exploitEPSS 0%adobe · after effectsFeb 10, 2026
- CVE-2026-2132031Monitor
After Effects | Use After Free (CWE-416)
HighCVSS 7.8No exploitEPSS 0%adobe · after effectsFeb 10, 2026
- CVE-2026-2132131Monitor
After Effects | Integer Overflow or Wraparound (CWE-190)
HighCVSS 7.8No exploitEPSS 0%adobe · after effectsFeb 10, 2026
- CVE-2026-2132231Monitor
After Effects | Out-of-bounds Read (CWE-125)
HighCVSS 7.8No exploitEPSS 0%adobe · after effectsFeb 10, 2026
- CVE-2026-2132331Monitor
After Effects | Use After Free (CWE-416)
HighCVSS 7.8No exploitEPSS 0%adobe · after effectsFeb 10, 2026
- CVE-2026-2132431Monitor
After Effects | Out-of-bounds Read (CWE-125)
HighCVSS 7.8No exploitEPSS 0%adobe · after effectsFeb 10, 2026
- CVE-2026-2132531Monitor
After Effects | Out-of-bounds Read (CWE-125)
HighCVSS 7.8No exploitEPSS 0%adobe · after effectsFeb 10, 2026
- CVE-2026-2132631Monitor
After Effects | Use After Free (CWE-416)
HighCVSS 7.8No exploitEPSS 0%adobe · after effectsFeb 10, 2026
- CVE-2026-2132731Monitor
After Effects | Out-of-bounds Write (CWE-787)
HighCVSS 7.8No exploitEPSS 0%adobe · after effectsFeb 10, 2026
- CVE-2026-2132831Monitor
After Effects | Out-of-bounds Write (CWE-787)
HighCVSS 7.8No exploitEPSS 0%adobe · after effectsFeb 10, 2026
- CVE-2026-2132931Monitor
After Effects | Use After Free (CWE-416)
HighCVSS 7.8No exploitEPSS 0%adobe · after effectsFeb 10, 2026
+32 moreAll records of the vendor
SAP · February 10
26 · 0 KEV · 2 critical| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2026-0488No exploit | Code Injection vulnerability in SAP CRM and SAP S/4HANA (Scripting Editor)sap · netweaver application server abap · CWE-862 | Critical9.9 | — | 0.5% | Feb 10, 2026 |
38Monitor | CVE-2026-0509No exploit | Missing Authorization check in SAP NetWeaver Application Server ABAP and ABAP Platformsap · netweaver as abap kernel · CWE-862 | Critical9.6 | — | 0.4% | Feb 10, 2026 |
35Monitor | CVE-2026-23687No exploit | XML Signature Wrapping in SAP NetWeaver AS ABAP and ABAP Platformsap · sap basis · CWE-347 | High8.8 | — | 0.5% | Feb 10, 2026 |
32Monitor | CVE-2026-0508No exploit | Open Redirect vulnerability in SAP BusinessObjects Business Intelligence Platformsap · businessobjects business intelligence platform · CWE-601 | High8.1 | — | 0.3% | Feb 10, 2026 |
30Monitor | CVE-2026-0485No exploit | Denial of service (DOS) vulnerability in SAP BusinessObjects BI Platformsap · businessobjects business intelligence platform · CWE-405 | High7.5 | — | 0.5% | Feb 10, 2026 |
30Monitor | CVE-2026-0490No exploit | Denial of service (DOS) in SAP BusinessObjects BI Platformsap · businessobjects business intelligence platform · CWE-862 | High7.5 | — | 0.4% | Feb 10, 2026 |
30Monitor | CVE-2026-23689No exploit | Denial of service (DOS) in SAP Supply Chain Managementsap · advanced planning and optimization · CWE-606 | High7.7 | — | 0.4% | Feb 10, 2026 |
30Monitor | CVE-2026-24322No exploit | Missing Authorization check in SAP Solution Tools Plug-In (ST-PI)sap · solution tools plug-in · CWE-862 | High7.7 | — | 0.2% | Feb 10, 2026 |
26Monitor | CVE-2026-0484No exploit | Missing Authorization check in SAP NetWeaver Application Server ABAP and SAP S/4HANAsap · sap basis · CWE-601 | Medium6.5 | — | 0.3% | Feb 10, 2026 |
26Monitor | CVE-2026-24324No exploit | Denial of service (DOS) vulnerability in SAP BusinessObjects Business Intelligence Platform (AdminTools)sap · businessobjects business intelligence platform · CWE-405 | Medium6.5 | — | 0.4% | Feb 10, 2026 |
24Monitor | CVE-2026-0505No exploit | Multiple vulnerabilities in BSP Applications of SAP Document Management Systemsap · document management system · CWE-79 | Medium6.1 | — | 0.2% | Feb 10, 2026 |
24Monitor | CVE-2026-24323No exploit | Multiple vulnerabilities in BSP Applications of SAP Document Management Systemsap · document management system · CWE-601 | Medium6.1 | — | 0.2% | Feb 10, 2026 |
- CVE-2026-048839Monitor
Code Injection vulnerability in SAP CRM and SAP S/4HANA (Scripting Editor)
CriticalCVSS 9.9No exploitEPSS 1%sap · netweaver application server abapFeb 10, 2026
- CVE-2026-050938Monitor
Missing Authorization check in SAP NetWeaver Application Server ABAP and ABAP Platform
CriticalCVSS 9.6No exploitEPSS 0%sap · netweaver as abap kernelFeb 10, 2026
- CVE-2026-2368735Monitor
XML Signature Wrapping in SAP NetWeaver AS ABAP and ABAP Platform
HighCVSS 8.8No exploitEPSS 1%sap · sap basisFeb 10, 2026
- CVE-2026-050832Monitor
Open Redirect vulnerability in SAP BusinessObjects Business Intelligence Platform
HighCVSS 8.1No exploitEPSS 0%sap · businessobjects business intelligence platformFeb 10, 2026
- CVE-2026-048530Monitor
Denial of service (DOS) vulnerability in SAP BusinessObjects BI Platform
HighCVSS 7.5No exploitEPSS 0%sap · businessobjects business intelligence platformFeb 10, 2026
- CVE-2026-049030Monitor
Denial of service (DOS) in SAP BusinessObjects BI Platform
HighCVSS 7.5No exploitEPSS 0%sap · businessobjects business intelligence platformFeb 10, 2026
- CVE-2026-2368930Monitor
Denial of service (DOS) in SAP Supply Chain Management
HighCVSS 7.7No exploitEPSS 0%sap · advanced planning and optimizationFeb 10, 2026
- CVE-2026-2432230Monitor
Missing Authorization check in SAP Solution Tools Plug-In (ST-PI)
HighCVSS 7.7No exploitEPSS 0%sap · solution tools plug-inFeb 10, 2026
- CVE-2026-048426Monitor
Missing Authorization check in SAP NetWeaver Application Server ABAP and SAP S/4HANA
MediumCVSS 6.5No exploitEPSS 0%sap · sap basisFeb 10, 2026
- CVE-2026-2432426Monitor
Denial of service (DOS) vulnerability in SAP BusinessObjects Business Intelligence Platform (AdminTools)
MediumCVSS 6.5No exploitEPSS 0%sap · businessobjects business intelligence platformFeb 10, 2026
- CVE-2026-050524Monitor
Multiple vulnerabilities in BSP Applications of SAP Document Management System
MediumCVSS 6.1No exploitEPSS 0%sap · document management systemFeb 10, 2026
- CVE-2026-2432324Monitor
Multiple vulnerabilities in BSP Applications of SAP Document Management System
MediumCVSS 6.1No exploitEPSS 0%sap · document management systemFeb 10, 2026
+14 moreAll records of the vendor
Siemens · February 10
11 · 0 KEV · 0 critical| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
34Monitor | CVE-2026-25655No exploit | A vulnerability has been identified in SINEC NMS (All versions < V4.0 SP2).siemens · sinec nms · CWE-427 | High8.5 | — | 0.2% | Feb 10, 2026 |
34Monitor | CVE-2026-25656No exploit | A vulnerability has been identified in SINEC NMS (All versions < V4.0 SP3), User Management Component (UMC) (All versions < V2.15.2.1).siemens · sinec nms · CWE-427 | High8.5 | — | 0.2% | Feb 10, 2026 |
29Monitor | CVE-2026-22923No exploit | A vulnerability has been identified in NX (All versions < V2512), NX (Managed Mode) (All versions < V2512).siemens · nx · CWE-121 | High7.3 | — | 0.2% | Feb 10, 2026 |
29Monitor | CVE-2026-23715No exploit | A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512).siemens · simcenter femap · CWE-787 | High7.3 | — | 0.2% | Feb 10, 2026 |
29Monitor | CVE-2026-23716No exploit | A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512).siemens · simcenter femap · CWE-125 | High7.3 | — | 0.2% | Feb 10, 2026 |
29Monitor | CVE-2026-23717No exploit | A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512).siemens · simcenter femap · CWE-125 | High7.3 | — | 0.2% | Feb 10, 2026 |
29Monitor | CVE-2026-23718No exploit | A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512).siemens · simcenter femap · CWE-125 | High7.3 | — | 0.2% | Feb 10, 2026 |
29Monitor | CVE-2026-23719No exploit | A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512).siemens · simcenter femap · CWE-122 | High7.3 | — | 0.2% | Feb 10, 2026 |
29Monitor | CVE-2026-23720No exploit | A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512).siemens · simcenter femap · CWE-125 | High7.3 | — | 0.2% | Feb 10, 2026 |
25Monitor | CVE-2024-52334No exploit | A vulnerability has been identified in syngo.plaza VB30E (All versions < VB30E_HF07).siemens · syngo.plaza vb30e · CWE-261 | Medium6.3 | — | 0.3% | Feb 10, 2026 |
24Monitor | CVE-2025-40587No exploit | A vulnerability has been identified in Polarion V2404 (All versions < V2404.5), Polarion V2410 (All versions < V2410.2).siemens · polarion v2404 · CWE-79 | Medium6.2 | — | 0.3% | Feb 10, 2026 |
- CVE-2026-2565534Monitor
A vulnerability has been identified in SINEC NMS (All versions < V4.0 SP2).
HighCVSS 8.5No exploitEPSS 0%siemens · sinec nmsFeb 10, 2026
- CVE-2026-2565634Monitor
A vulnerability has been identified in SINEC NMS (All versions < V4.0 SP3), User Management Component (UMC) (All versions < V2.15.2.1).
HighCVSS 8.5No exploitEPSS 0%siemens · sinec nmsFeb 10, 2026
- CVE-2026-2292329Monitor
A vulnerability has been identified in NX (All versions < V2512), NX (Managed Mode) (All versions < V2512).
HighCVSS 7.3No exploitEPSS 0%siemens · nxFeb 10, 2026
- CVE-2026-2371529Monitor
A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512).
HighCVSS 7.3No exploitEPSS 0%siemens · simcenter femapFeb 10, 2026
- CVE-2026-2371629Monitor
A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512).
HighCVSS 7.3No exploitEPSS 0%siemens · simcenter femapFeb 10, 2026
- CVE-2026-2371729Monitor
A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512).
HighCVSS 7.3No exploitEPSS 0%siemens · simcenter femapFeb 10, 2026
- CVE-2026-2371829Monitor
A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512).
HighCVSS 7.3No exploitEPSS 0%siemens · simcenter femapFeb 10, 2026
- CVE-2026-2371929Monitor
A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512).
HighCVSS 7.3No exploitEPSS 0%siemens · simcenter femapFeb 10, 2026
- CVE-2026-2372029Monitor
A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512).
HighCVSS 7.3No exploitEPSS 0%siemens · simcenter femapFeb 10, 2026
- CVE-2024-5233425Monitor
A vulnerability has been identified in syngo.plaza VB30E (All versions < VB30E_HF07).
MediumCVSS 6.3No exploitEPSS 0%siemens · syngo.plaza vb30eFeb 10, 2026
- CVE-2025-4058724Monitor
A vulnerability has been identified in Polarion V2404 (All versions < V2404.5), Polarion V2410 (All versions < V2410.2).
MediumCVSS 6.2No exploitEPSS 0%siemens · polarion v2404Feb 10, 2026
Schneider Electric · February 10
2 · 0 KEV · 0 critical| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
28Monitor | CVE-2026-1226No exploit | CWE‑94: Improper Control of Generation of Code vulnerability exists that could cause execution of untrusted or unintended code within the apschneider electric · ecostruxure building operation workstation · CWE-94 | High7.0 | — | 0.1% | Feb 11, 2026 |
28Monitor | CVE-2026-1227No exploit | CWE-611: Improper Restriction of XML External Entity Reference vulnerability exists that could cause unauthorized disclosure of local files,schneider electric · ecostruxure building operation workstation · CWE-611 | High7.0 | — | 0.1% | Feb 11, 2026 |
- CVE-2026-122628Monitor
CWE‑94: Improper Control of Generation of Code vulnerability exists that could cause execution of untrusted or unintended code within the ap
HighCVSS 7.0No exploitEPSS 0%schneider electric · ecostruxure building operation workstationFeb 11, 2026
- CVE-2026-122728Monitor
CWE-611: Improper Restriction of XML External Entity Reference vulnerability exists that could cause unauthorized disclosure of local files,
HighCVSS 7.0No exploitEPSS 0%schneider electric · ecostruxure building operation workstationFeb 11, 2026