Skip to content
Noroxi

Patch Tuesday

August 2026

On the second Tuesday of each month Microsoft, Adobe, SAP, Siemens and Schneider Electric publish in bulk; Oracle on the third Tuesday of January, April, July and October. Records published that day, from our own database, sorted by action score: KEV and mature exploits first.

How it is computed: CNA stamp + publication date (two-day window, UTC). No claim of a one-to-one match with the vendor bulletin; out-of-band updates land on other days.

470 records · 3 KEV

Affecting your stack

This month's records that match the products and versions in your stack.

Sign in to see the ones matching your stack; records and notifications are free. →

Microsoft · August 11

400 · 2 KEV · 9 critical
  • CVE-2026-65660
    66This week

    Microsoft SharePoint Server Remote Code Execution Vulnerability

    HighCVSS 8.8KEVWeaponizedEPSS 2%

    microsoft · sharepoint serverAug 11, 2026

  • Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

    HighCVSS 7.0KEVWeaponizedEPSS 0%

    microsoft · windows 10 1607Aug 11, 2026

  • Microsoft High Performance Computing (HPC) Pack Remote Code Execution Vulnerability

    CriticalCVSS 9.8No exploitEPSS 2%

    microsoft · windows appAug 11, 2026

  • Microsoft QUIC Remote Code Execution Vulnerability

    CriticalCVSS 9.8No exploitEPSS 1%

    microsoft · windows 11 23h2Aug 11, 2026

  • Windows DNS Server Remote Code Execution Vulnerability

    CriticalCVSS 9.8Proof of conceptEPSS 1%

    microsoft · windows 10 1607Aug 11, 2026

  • Windows Deployment Services TFTP Server Remote Code Execution Vulnerability

    CriticalCVSS 9.8No exploitEPSS 1%

    microsoft · windows 10 1607Aug 11, 2026

  • Microsoft Teams Remote Code Execution Vulnerability

    CriticalCVSS 9.8No exploitEPSS 1%

    microsoft · teamsAug 11, 2026

  • Windows iSCSI Target Service Remote Code Execution Vulnerability

    CriticalCVSS 9.8No exploitEPSS 1%

    microsoft · windows 10 1607Aug 11, 2026

  • Azure Storage Explorer Elevation of Privilege Vulnerability

    CriticalCVSS 9.6No exploitEPSS 1%

    microsoft · azure storage explorerAug 11, 2026

  • Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability

    CriticalCVSS 9.4No exploitEPSS 1%

    microsoft · azure kubernetes serviceAug 11, 2026

  • Microsoft Office SharePoint Spoofing Vulnerability

    CriticalCVSS 9.3No exploitEPSS 1%

    microsoft · sharepoint serverAug 11, 2026

  • Microsoft SharePoint Server Remote Code Execution Vulnerability

    HighCVSS 8.8No exploitEPSS 2%

    microsoft · sharepoint serverAug 11, 2026

+388 moreAll records of the vendor

Adobe · August 11

52 · 1 KEV · 6 critical

+40 moreAll records of the vendor

SAP · August 11

1 · 0 KEV · 1 critical
  • Improper Authorization in SAP Commerce Cloud (Data Hub Adapter)

    CriticalCVSS 10.0Proof of conceptEPSS 1%

    sap_se · sap commerce cloud (data hub adapter)Aug 11, 2026

All records of the vendor

Siemens · August 11

17 · 0 KEV · 1 critical
  • A vulnerability has been identified in SIMATIC IoT2050 Advanced (6ES7647-0BA00-1YA2) (All versions < V4.3.4.1 running Industrial OS with Nod

    CriticalCVSS 10.0No exploitEPSS 1%

    siemens · simatic iot2050 advancedAug 11, 2026

  • A vulnerability has been identified in Siemens License Server (SLS) (All versions < V5.3).

    HighCVSS 8.7No exploitEPSS 1%

    siemens · siemens license server (sls)Aug 11, 2026

  • A vulnerability has been identified in Siemens License Server (SLS) (All versions < V5.1).

    HighCVSS 8.3No exploitEPSS 0%

    siemens · siemens license server (sls)Aug 11, 2026

  • A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update

    HighCVSS 7.3No exploitEPSS 0%

    siemens · solid edge se2025Aug 11, 2026

  • A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update

    HighCVSS 7.3No exploitEPSS 0%

    siemens · solid edge se2025Aug 11, 2026

  • A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update

    HighCVSS 7.3No exploitEPSS 0%

    siemens · solid edge se2025Aug 11, 2026

  • A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update

    HighCVSS 7.3No exploitEPSS 0%

    siemens · solid edge se2025Aug 11, 2026

  • A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update

    HighCVSS 7.3No exploitEPSS 0%

    siemens · solid edge se2025Aug 11, 2026

  • A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update

    HighCVSS 7.3No exploitEPSS 0%

    siemens · solid edge se2025Aug 11, 2026

  • A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update

    HighCVSS 7.3No exploitEPSS 0%

    siemens · solid edge se2025Aug 11, 2026

  • A vulnerability has been identified in Simcenter Femap (All versions < V2606), Simcenter Nastran (All versions < V2606).

    HighCVSS 7.3No exploitEPSS 0%

    siemens · simcenter femapAug 11, 2026

  • A vulnerability has been identified in Simcenter Femap (All versions < V2606.0001).

    HighCVSS 7.3No exploitEPSS 0%

    siemens · simcenter femapAug 11, 2026

+5 moreAll records of the vendor

Schneider Electric · August 11

0 · 0 KEV · 0 critical

No records in this window.