Microsoft May 2026 Patch Tuesday Fixes 120 Vulnerabilities, No Zero-Day Exploits Reported
13 de Maio de 2026, 03:28
![]()
Microsoft May 2026 Patch Tuesday: Vulnerabilities That Demand Attention
One of the most important areas covered in the May 2026 Patch Tuesday update involves multiple vulnerabilities affecting Microsoft Office applications, particularly Word and Excel. According to Microsoft, attackers could exploit these flaws by tricking users into opening malicious files. Several of the vulnerabilities can also be triggered through the preview pane, allowing remote code execution without fully opening the attachment. Because Office documents remain a common attack vector in phishing campaigns, security professionals are strongly recommending that organizations prioritize deployment of these updates, especially in environments where employees regularly receive external attachments.Windows GDI Flaw Allows Exploitation Through Microsoft Paint
Among the noteworthy issues patched during Microsoft’s May 2026 Patch Tuesday rollout is CVE-2026-35421, a Windows GDI remote code execution vulnerability. The flaw can be exploited through a malicious Enhanced Metafile (EMF) image opened in Microsoft Paint. Successful exploitation could allow attackers to execute arbitrary code on the victim’s machine. Although the attack requires user interaction, researchers warned that image-based attacks are often effective because users may not recognize specially crafted files as dangerous.SharePoint and DNS Vulnerabilities Raise Enterprise Security Concerns
Another major vulnerability addressed in the May 2026 Patch Tuesday release is CVE-2026-40365, a remote code execution flaw affecting Microsoft SharePoint Server. Microsoft stated that an authenticated attacker could use the vulnerability to launch a network-based attack capable of remotely executing code on vulnerable SharePoint systems. Since SharePoint environments often store sensitive internal data and business documents, the flaw is expected to receive close attention from enterprise administrators. The company also patched CVE-2026-41096, a serious Windows DNS Client remote code execution vulnerability. The flaw involves improper handling of specially crafted DNS responses sent by attacker-controlled DNS servers. The issue stems from a heap-based buffer overflow condition in Windows NetLogon functionality. A successful attack could corrupt system memory and allow remote code execution without requiring authentication.Dynamics 365 Vulnerability Carries Near-Maximum Severity Score
Another critical issue fixed during the Microsoft May 2026 Patch Tuesday cycle is CVE-2026-42898, a remote code execution vulnerability affecting on-premises versions of Microsoft Dynamics 365. The flaw received a CVSS severity score of 9.9 and requires no user interaction for exploitation. Researchers warned that attacks targeting Dynamics 365 environments could have widespread consequences because the platform frequently connects with multiple enterprise systems and sensitive databases. Previous attacks involving Dynamics infrastructure have exposed privileged business information, making this vulnerability especially concerning for large organizations.Windows 11 Cumulative Updates Introduce New Features
As part of the May 2026 Patch Tuesday rollout, Microsoft released Windows 11 cumulative updates KB5089549 and KB5087420 for versions 25H2, 24H2, and 23H2. The updates are mandatory because they contain the latest security fixes and stability improvements. After installation:- Windows 11 25H2 updates to build 26200.8457
- Windows 11 24H2 updates to build 26100.8457
- Windows 11 23H2 updates to build 22631.7079
Xbox-Inspired Desktop Experience Added to Windows 11
One of the more noticeable additions included in the Microsoft May 2026 Patch Tuesday update is a new Xbox-style desktop experience for PCs. The feature is designed to provide a console-like interface on Windows devices. Alongside the visual changes, Microsoft also introduced reliability improvements for the taskbar and enhancements to Windows Hello authentication. The update improves both Windows Hello Face recognition reliability and the persistence of fingerprint authentication across system upgrades.File Explorer Receives Major Improvements
File Explorer received several updates in the latest May 2026 Patch Tuesday release. Microsoft expanded archive support to include formats such as:- uu
- cpio
- xar
- NuGet Packages (nupkg)
Input, Voice Typing, and Haptic Feedback Enhancements
The Microsoft May 2026 Patch Tuesday updates introduced several improvements to input and accessibility features. Compatible devices can now provide haptic feedback during actions such as snapping windows or aligning PowerPoint objects. Current supported hardware includes:- Surface Slim Pen 2
- ASUS Pen 3.0
- MSI Pen 2
Storage, Printing, and Performance Updates Included
Several broader system improvements were bundled into the May 2026 Patch Tuesday release. Microsoft increased the FAT32 formatting limit through the command line from 32GB to 2TB. The update also improves storage settings performance when viewing large disk volumes. Additional changes include:- Reduced memory usage in Delivery Optimization
- Improved audio driver compatibility with midisrv.exe
- Better taskbar system tray reliability
- Enhanced startup application performance
- Improved monitor color profile persistence
- Simplified kiosk mode app configuration
