Microsoft to automatically roll back faulty Windows drivers

2026-05-15T13:23:29Z7dff5065ec1ce58a5b07f08ef932a3b54b914ba59145db2d85371ba5ab76e616
auth-bypassauthentication bypassburst-statisticsciscodenial-of-servicedevice-driversdriver rollbackexchangemicrosoftmistral-ainginxnpmopenaioutlook-on-the-webpwn2own','vulnerability-research'pypiremote-code-executionsd-wansupply chaintanstackteamPCPwindowswordpressxsszero-day

What happened

Multiple high-impact security developments: Microsoft will remotely roll back faulty Windows drivers and warned of an actively exploited Exchange Server zero-day allowing arbitrary code via XSS against Outlook on the web. Cisco disclosed a critical, actively exploited Catalyst SD‑WAN Controller authentication bypass (CVE-2026-20182). A new Linux kernel privilege escalation (Fragnesia, CVE-2026-46300) is being patched. Supply-chain and source-code incidents include TeamPCP advertising stolen Mistral AI repos and OpenAI confirming device breaches from the TanStack npm/PyPI supply-chain attack. W

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
7dff5065ec1ce58a5b07f08ef932a3b54b914ba59145db2d85371ba5ab76e616
Enrichment time
2026-05-15T13:23:29Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.