August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day

2026-08-11T19:23:58Zaaad5ecab3b55eb1360a078a3334174e13f07535997fec54895ef5ac3c03a1a2
AI securityAdobe Campaign ClassicAdobe ColdFusionMicrosoftPatch TuesdaySAPWindows kernelZoomactively exploitedafd.syscode injectiondata theftmalicious browser extensionmemory corruptionprivilege escalationremote code executionuse-after-freezero-clickzero-day

What happened

SecurityWeek’s August 11, 2026 feed reports multiple major vulnerability disclosures and patches, including Microsoft’s August Patch Tuesday with 421 CVEs and an actively exploited afd.sys Windows kernel use-after-free enabling SYSTEM privileges. Other reports cover critical Adobe ColdFusion and Campaign Classic flaws, a zero-click Zoom annotation code-execution vulnerability, critical SAP code-injection and memory-corruption issues, and a malicious Chrome extension that returned to the store and resumed stealing AI chats. The feed also includes cybersecurity policy, funding, AI, and industry는

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
aaad5ecab3b55eb1360a078a3334174e13f07535997fec54895ef5ac3c03a1a2
Enrichment time
2026-08-11T19:23:58Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.