Microsoft Corp. security patch release for CVE-2026-56155
Security Patch Release
Summary
Hide ▲
Show ▼
Microsoft released July 2026 Patch Tuesday updates that close at least 570 security holes in Windows and other software, expanding the remediation burden for defenders. The bundle includes nearly 60 critical vulnerabilities and three zero-days already exploited in the wild. It also covers issues such as CVE-2026-56155 in Active Directory Federation Services, CVE-2026-56164 in SharePoint, and CVE-2026-50661 in Windows BitLocker. The release is almost triple last month’s record patch count and adds operational risk during rollout.
Related Happenings
Zoom security patch release for CVE-2026-53412
Security Patch Release
H score43
First: 15.07.2026 23:16
Last: 15.07.2026 23:16
Sources 1
About this happening:
Zoom released Windows security patches covering CVE-2026-53412 and three additional flaws across Zoom Workplace, Windows VDI, Zoom Rooms, Contact Center, a...
Zoom security patch release for CVE-2026-53412
Security Patch ReleaseAbout this happening: Zoom released Windows security patches covering CVE-2026-53412 and three additional flaws across Zoom Workplace, Windows VDI, Zoom Rooms, Contact Center, a...
CISA Microsoft SharePoint hardening guidance for exploited zero-days
Advisory/Mitigation
H score56
First: 15.07.2026 17:07
Last: 15.07.2026 17:07
Sources 1
How related:
The development comes as CISA warned of active exploitation of multiple SharePoint Server vulnerabilities, including CVE-2026-32201, CVE-2026-45659, CVE-2026-56164, and CVE-2026-58644, that could enable threat actors to gain unauthorized access to on-premises instances.
About this happening:
CISA’s Microsoft SharePoint servers hardening guidance responds to newly disclosed zero-day vulnerabilities that can be exploited remotely, creating immediate risk for sup...
CISA Microsoft SharePoint hardening guidance for exploited zero-days
Advisory/MitigationHow related: The development comes as CISA warned of active exploitation of multiple SharePoint Server vulnerabilities, including CVE-2026-32201, CVE-2026-45659, CVE-2026-56164, and CVE-2026-58644, that could enable threat actors to gain unauthorized access to on-premises instances.
About this happening: CISA’s Microsoft SharePoint servers hardening guidance responds to newly disclosed zero-day vulnerabilities that can be exploited remotely, creating immediate risk for sup...
Microsoft SharePoint Server actively exploited multi-CVE wave
Exploitation Wave
H score79
First: 15.07.2026 12:44
Last: 15.07.2026 12:44
Sources 1
How related:
The development comes as CISA warned of active exploitation of multiple SharePoint Server vulnerabilities, including CVE-2026-32201, CVE-2026-45659, CVE-2026-56164, and CVE-2026-58644, that could enable threat actors to gain unauthorized access to on-premises instances.
About this happening:
SharePoint Server exploitation wave remains active across internet-exposed on-premises instances, with CVE-2026-32201, CVE-2026-45659, and CVE-2026-56164 used...
Microsoft SharePoint Server actively exploited multi-CVE wave
Exploitation WaveHow related: The development comes as CISA warned of active exploitation of multiple SharePoint Server vulnerabilities, including CVE-2026-32201, CVE-2026-45659, CVE-2026-56164, and CVE-2026-58644, that could enable threat actors to gain unauthorized access to on-premises instances.
About this happening: SharePoint Server exploitation wave remains active across internet-exposed on-premises instances, with CVE-2026-32201, CVE-2026-45659, and CVE-2026-56164 used...
Microsoft security patch release for CVE-2026-56164
Security Patch Release
H score11
First: 14.07.2026 23:25
Last: 14.07.2026 23:25
Sources 1
How related:
Patches for the flaw have been released as part of the Patch Tuesday updates released on July 14, 2026.
About this happening:
Microsoft released a record 622-CVE Patch Tuesday that includes two exploited flaws in SharePoint Server and Active Directory Federation Services, raising urgency...
Microsoft security patch release for CVE-2026-56164
Security Patch ReleaseHow related: Patches for the flaw have been released as part of the Patch Tuesday updates released on July 14, 2026.
About this happening: Microsoft released a record 622-CVE Patch Tuesday that includes two exploited flaws in SharePoint Server and Active Directory Federation Services, raising urgency...
Microsoft YellowKey patch release (CVE-2026-45585)
Security Patch Release
H score20
First: 11.06.2026 20:43
Last: 11.06.2026 20:43
Sources 1
About this happening:
Microsoft's Patch Tuesday updates this week patched YellowKey (CVE-2026-45585), closing a Windows BitLocker bypass that could expose protected volumes. The vendor rele...
Microsoft YellowKey patch release (CVE-2026-45585)
Security Patch ReleaseAbout this happening: Microsoft's Patch Tuesday updates this week patched YellowKey (CVE-2026-45585), closing a Windows BitLocker bypass that could expose protected volumes. The vendor rele...
Timeline
-
14.07.2026 22:22 1 articles · 13d ago
CISA adds SharePoint zero-day to Known Exploited Vulnerabilities list
Technical Analysis UpdateCISA adds the Microsoft SharePoint zero-day to its Known Exploited Vulnerabilities list on July 1, indicating the flaw is already being actively exploited before Microsoft’s July Patch Tuesday bundle.
Show sources
- Microsoft Patches a Record 570 Security Flaws — krebsonsecurity.com — 14.07.2026 22:22
-
14.07.2026 22:22 1 articles · 13d ago
Microsoft says AI will drive a higher volume of security updates
Technical Analysis UpdateMicrosoft Executive Vice President Pavan Davuluri says advances in AI are making it possible to find more issues, faster, across more code, and that Windows users should expect a higher volume of security updates in each release.
Show sources
- Microsoft Patches a Record 570 Security Flaws — krebsonsecurity.com — 14.07.2026 22:22
-
14.07.2026 22:22 4 articles · 13d ago
Microsoft releases July Patch Tuesday updates for at least 570 security holes
Initial DisclosureMicrosoft releases July Patch Tuesday updates for Windows operating systems and other software, closing at least 570 security holes, nearly 60 critical flaws, and three zero-days already exploited in the wild. The bundle includes CVE-2026-56155 in Active Directory Federation Services, CVE-2026-56164 in SharePoint, CVE-2026-50661 in Windows BitLocker, and CVE-2026-48561 in Microsoft Copilot.
Show sources
- Microsoft Patches a Record 570 Security Flaws — krebsonsecurity.com — 14.07.2026 22:22
- Microsoft Patches a Record 570 Security Flaws — krebsonsecurity.com — 14.07.2026 22:22
- Microsoft Patches 570 CVEs in Record Patch Tuesday — www.infosecurity-magazine.com — 15.07.2026 12:20
- CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEV — thehackernews.com — 17.07.2026 09:42