Cybersecurity Blog | RedLegg

Patch Tuesday - May 2026

Written by RedLegg Blog | 5/14/26 3:00 PM

*Important note: These are not the only vulnerabilities that were recently released; however, these are the vulnerabilities RedLegg has identified as critical and require immediate attention.

CRITICAL VULNERABILITIES

 

 Windows Native WiFi Miniport Driver   Critical   Windows Native WiFi Miniport Driver Remote Code Execution Vulnerability 
 Windows GDI   Critical  Windows GDI Remote Code Execution Vulnerability 
 Microsoft Office   Critical  Microsoft Office Remote Code Execution Vulnerability 
 Microsoft Office Word   Critical  Microsoft Word Remote Code Execution Vulnerability 
 Microsoft Office   Critical   Microsoft Office Remote Code Execution Vulnerability 
 Microsoft Office Word   CVE-2026-40364   Critical   Microsoft Word Remote Code Execution Vulnerability 
 Microsoft Office SharePoint   Critical   Microsoft SharePoint Server Remote Code Execution Vulnerability 
 Microsoft Office Word   Critical  Microsoft Word Remote Code Execution Vulnerability 
 Microsoft Office Word   Critical   Microsoft Word Remote Code Execution Vulnerability 
 Windows Hyper-V   Critical  Windows Hyper-V Elevation of Privilege Vulnerability 
 Windows Win32K - GRFX   Critical  Windows Graphics Component Remote Code Execution Vulnerability 
 Windows Netlogon   Critical  Windows Netlogon Remote Code Execution Vulnerability  
 Microsoft Windows DNS   CVE-2026-41096   Critical   Windows DNS Client Remote Code Execution Vulnerability 
 Microsoft SSO Plugin for Jira & Confluence   Critical  Microsoft SSO Plugin for Jira & Confluence Elevation of Privilege Vulnerability 
 Microsoft Office   CVE-2026-42831   Critical   Microsoft Office Remote Code Execution Vulnerability 
 Microsoft Dynamics 365 (on-premises)   Critical   Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability