Vulnerabilities · 188 days ago
Microsoft released March 2026 Patch Tuesday addressing 93 vulnerabilities, including nine Chromium/Edge bugs and eight rated critical. No known exploit activity; two vulnerabilities were disclosed prior to release. Apply updates promptly and prioritize critical fixes and remediation of
CVEs in this update
10 CVEs
Across Microsoft SQL Server 2017 for x64-based Systems (GDR), Microsoft SQL Server 2019 for x64-based Systems (GDR), Microsoft SQL Server 2016 for x64-based Systems Service Pack 3 (GDR), and related packages.
1 critical · 6 high · 3 medium · 0 low
0 in CISA KEV · 3 with EPSS above 1%
Highest severity: CVE-2026-21536 · 9.8 CRITICAL
Highest EPSS: CVE-2026-21536 · 1.6%
6 sources covering this story
Microsoft Releases March 2026 Security Updates
JPCERT-AT-2026-0005 JPCERT/CC 2026-03-11 these vulnerabilities may be able to execute arbitrary code.Please consider applying the security update programs by referring to the information provided by Microsoft.
On March 2026 Patch Tuesday, Microsoft addressed 80+ vulnerabilities affecting its software and cloud services.
Microsoft Fixes Two Publicly Disclosed Zero-Days
March Patch Tuesday sees Microsoft release updates for 79 flaws
Microsoft Patches 83 CVEs in March Update
For a change, there's little in this month's Patch Tuesday that should cause panic, according to security experts.
Microsoft Patches 83 Vulnerabilities
Microsoft has fixed a critical vulnerability, but none of the flaws fixed this Patch Tuesday has been exploited in the wild.
Microsoft releases Windows 10 KB5078885 extended security update
Microsoft has released the Windows 10 KB5078885 extended security update to fix the March 2026 Patch Tuesday vulnerabilities, including 2 zero-days and an issue that prevent some devices from shutting down.
Part of the PlainSec briefing for 2026-03-15