April 2026 Patch Tuesday: Two Zero-Days and Eight Critical Vulnerabilities Among 164 CVEs
2026-04-15T19:23:37Z•a65adbcff4e2d9a7ccd113fc63d00e255ecfde5fcaf63cac221a68d647f4858e
AI securityCNAPPCVE-2026-20929DNS CNAME abuseFalconSTARDUST_CHOLLIMAcritical-vulnerabilitiesexposure-evaluationkerberosnpmpatch-tuesdaysecure-bootsupply-chainzero-day
What happened
CrowdStrike blog roundup (Mar–Apr 2026) emphasizing the April 2026 Patch Tuesday that fixed 164 CVEs including two zero-days and eight critical vulnerabilities. Separate posts detail detection guidance for CVE-2026-20929 (Kerberos authentication relay abusing DNS CNAME records), a likely STARDUST CHOLLIMA compromise of the axios npm package (supply-chain risk), and product/security advances (Windows Secure Boot certificate lifecycle support in Falcon, Falcon Data Security, CNAPP adversary-informed risk prioritization, AI/agent security and exposure-evaluation improvements).
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- crowdstrike_blog
- Record identifier
- a65adbcff4e2d9a7ccd113fc63d00e255ecfde5fcaf63cac221a68d647f4858e
- Enrichment time
- 2026-04-15T19:23:37Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.