Microsoft Patch Tuesday, tracked.
2135 Microsoft CVEs analyzed across 30 months. Non-Microsoft CNAs excluded.
Total CVEs
2135
Critical
339
Important
1698
Exploited in the Wild
43
Publicly Disclosed
69
Latest Patch Tuesday — Patch Tuesday February 2026
CVEs
61
Critical
7
Important
51
Exploited
6
Recent Months
| Month | CVEs | Critical | Exploited |
|---|---|---|---|
| Patch Tuesday February 2026 | 61 | 7 | 6 |
| Patch Tuesday December 2025 | 65 | 8 | 1 |
| Patch Tuesday November 2025 | 71 | 11 | 1 |
| Patch Tuesday September 2025 | 86 | 13 | 0 |
| Patch Tuesday June 2025 | 72 | 13 | 1 |
| Patch Tuesday May 2025 | 79 | 11 | 5 |
Most Recently Exploited CVEs
| CVE | Title | Severity | Month |
|---|---|---|---|
| CVE-2026-21510 | CVE-2026-21510 — Windows Shell Security Feature Bypass Vulnerability | Important | 2026-02 |
| CVE-2026-21513 | CVE-2026-21513 — MSHTML Framework Security Feature Bypass Vulnerability | Important | 2026-02 |
| CVE-2026-21514 | CVE-2026-21514 — Microsoft Word Security Feature Bypass Vulnerability | Important | 2026-02 |
| CVE-2026-21519 | CVE-2026-21519 — Desktop Window Manager Elevation of Privilege Vulnerability | Important | 2026-02 |
| CVE-2026-21525 | CVE-2026-21525 — Windows Remote Access Connection Manager Denial of Service Vulnerability | Moderate | 2026-02 |
| CVE-2026-21533 | CVE-2026-21533 — Windows Remote Desktop Services Elevation of Privilege Vulnerability | Important | 2026-02 |
| CVE-2025-62221 | CVE-2025-62221 — Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | Important | 2025-12 |
| CVE-2025-62215 | CVE-2025-62215 — Windows Kernel Elevation of Privilege Vulnerability | Important | 2025-11 |
| CVE-2025-33053 | CVE-2025-33053 — Internet Shortcut Files Remote Code Execution Vulnerability | Important | 2025-06 |
| CVE-2025-30397 | CVE-2025-30397 — Scripting Engine Memory Corruption Vulnerability | Important | 2025-05 |