Microsoft's MDASH AI System Finds 16 Windows Flaws Fixed in Patch Tuesday

2026-05-13T19:24:06Z99a77d10c15822d92cc1e533a446621905c47258f91ed70698e6e5f72046cdbb
active-exploitationagentic-aiaibanking-trojancpanelcredential-theftcvedaybreakeximexploit-in-the-wildmdashmicrosoftnpmollamaopenaipatch-tuesdaypypirubygemssecurity-patchsupply-chainteamPCPteampcptrickmovulnerability-disclosurezero-day

What happened

A batch of The Hacker News reports highlights a convergence of AI-driven vulnerability discovery and active exploitation across multiple ecosystems. Microsoft announced MDASH, a multi-model agentic scanning system and disclosed that it helped find 16 Windows flaws as part of a Patch Tuesday that fixed 138 vulnerabilities (30 Critical). Multiple active threats and supply-chain incidents were reported including active exploitation of cPanel CVE-2026-41940 to deploy a Filemanager backdoor, a severe Exim BDAT use-after-free (CVE-2026-45185), a critical Ollama out-of-bounds read (CVE-2026-7482), as

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
99a77d10c15822d92cc1e533a446621905c47258f91ed70698e6e5f72046cdbb
Enrichment time
2026-05-13T19:24:06Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.