Microsoft Patch Tuesday January 2026: 3 Zero-Days, 114 Vulnerabilities Fixed

ago 1 hour
Microsoft Patch Tuesday January 2026: 3 Zero-Days, 114 Vulnerabilities Fixed

In January 2026, Microsoft released critical security updates as part of its Patch Tuesday, addressing a total of 114 vulnerabilities, including three severe zero-day flaws.

Critical Vulnerabilities in Microsoft Patch Tuesday January 2026

The January 2026 update highlights several significant security issues that could potentially impact users and organizations using Microsoft products. This month’s patch includes:

  • CVE-2026-21224: An Elevation of Privilege Vulnerability in Azure Connected Machine Agent.
  • CVE-2026-20952: A critical Remote Code Execution Vulnerability in Microsoft Office.
  • CVE-2026-20822: A critical Elevation of Privilege Vulnerability in the Windows Graphics Component.

Details of the Vulnerabilities

Among the 114 identified vulnerabilities, some are particularly noteworthy. The zero-days discovered have been exploited in the wild, emphasizing the urgency for users to apply the updates promptly.

  • CVE-2026-21224: This vulnerability affects Azure services, allowing unauthorized elevation of privileges.
  • CVE-2026-20952: This critical flaw in Microsoft Office opens doors for remote code execution attacks.
  • CVE-2026-20822: In the Windows Graphics Component, this vulnerability also allows attackers to elevate privileges.

Wider Implications of the January 2026 Patch

These updates are crucial for maintaining the security integrity of systems using Microsoft products. Addressing vulnerabilities like those mentioned can significantly reduce the risk of attacks, data breaches, and unauthorized access.

With the evolving threat landscape, it is essential for IT departments and users to apply these patches as soon as possible. Regular updates help safeguard sensitive information and enhance overall system security.

For comprehensive information about specific vulnerabilities and updates, users should consult detailed security guidelines provided by Microsoft and ensure their systems are up to date.

The post Microsoft Patch Tuesday January 2026: 3 Zero-Days, 114 Vulnerabilities Fixed appeared first on CDN3 - Filmogaz.