August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day
2026-08-11T19:23:58Z•aaad5ecab3b55eb1360a078a3334174e13f07535997fec54895ef5ac3c03a1a2
AI securityAdobe Campaign ClassicAdobe ColdFusionMicrosoftPatch TuesdaySAPWindows kernelZoomactively exploitedafd.syscode injectiondata theftmalicious browser extensionmemory corruptionprivilege escalationremote code executionuse-after-freezero-clickzero-day
What happened
SecurityWeek’s August 11, 2026 feed reports multiple major vulnerability disclosures and patches, including Microsoft’s August Patch Tuesday with 421 CVEs and an actively exploited afd.sys Windows kernel use-after-free enabling SYSTEM privileges. Other reports cover critical Adobe ColdFusion and Campaign Classic flaws, a zero-click Zoom annotation code-execution vulnerability, critical SAP code-injection and memory-corruption issues, and a malicious Chrome extension that returned to the store and resumed stealing AI chats. The feed also includes cybersecurity policy, funding, AI, and industry는
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- aaad5ecab3b55eb1360a078a3334174e13f07535997fec54895ef5ac3c03a1a2
- Enrichment time
- 2026-08-11T19:23:58Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.