Microsoft to automatically roll back faulty Windows drivers
2026-05-15T13:23:29Z•7dff5065ec1ce58a5b07f08ef932a3b54b914ba59145db2d85371ba5ab76e616
auth-bypassauthentication bypassburst-statisticsciscodenial-of-servicedevice-driversdriver rollbackexchangemicrosoftmistral-ainginxnpmopenaioutlook-on-the-webpwn2own','vulnerability-research'pypiremote-code-executionsd-wansupply chaintanstackteamPCPwindowswordpressxsszero-day
What happened
Multiple high-impact security developments: Microsoft will remotely roll back faulty Windows drivers and warned of an actively exploited Exchange Server zero-day allowing arbitrary code via XSS against Outlook on the web. Cisco disclosed a critical, actively exploited Catalyst SD‑WAN Controller authentication bypass (CVE-2026-20182). A new Linux kernel privilege escalation (Fragnesia, CVE-2026-46300) is being patched. Supply-chain and source-code incidents include TeamPCP advertising stolen Mistral AI repos and OpenAI confirming device breaches from the TanStack npm/PyPI supply-chain attack. W
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 7dff5065ec1ce58a5b07f08ef932a3b54b914ba59145db2d85371ba5ab76e616
- Enrichment time
- 2026-05-15T13:23:29Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.