Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack

Microsoft's latest security update patches 398 flaws, including a zero-day vulnerability (CVE-2026-68820) in a Windows kernel driver that is actively exploited to escalate privileges to SYSTEM.

Microsoft patched 398 security flaws in its monthly update, including a Windows kernel driver zero-day (CVE-2026-68820, CVSS 7.0) already exploited in attacks. The bug resides in a core driver handling network socket operations. An attacker with code running on a machine can exploit it to escalate privileges to SYSTEM. Microsoft prioritized this patch.