Microsoft Releases Record-Breaking Patch Tuesday With 208 CVEs

2026-06-10T02:51:43Z56cd3925120e1595f07334c8477e1a5fe8e45f836393e0dba354b6b978fa423c
account takeoverai toolingberriaicheck pointchromecisaeverest formsexfiltrationgithub compromisekevlinux nf_tableslocal privilege escalationmiasma wormmicrosoftpatch tuesdayrcesupply chainunc3753v8veeamwordpresszero-day

What happened

Multiple high-impact security events reported: Microsoft’s June 2026 Patch Tuesday shipped a record 208 CVEs (including an actively exploited zero‑day) across Windows, Office, Azure, Exchange, and more; Google patched an actively exploited Chrome/V8 zero‑day (CVE-2026-11645); Veeam fixed a critical Backup & Replication RCE allowing low‑privileged domain users remote code execution (CVE-2026-44963); CISA added BerriAI LiteLLM and a Check Point Security Gateway flaw (including CVE-2026-42271) to its KEV catalog; a Linux nf_tables local root UAF was disclosed and patched (CVE-2026-23111); Everest

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
56cd3925120e1595f07334c8477e1a5fe8e45f836393e0dba354b6b978fa423c
Enrichment time
2026-06-10T02:51:43Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.