MS Family June 2026 Routine Security Update Advisory
Overview
On June 9, 2026, Microsoft released security updates that address vulnerabilities in several of its products. the affected products include Windows, Microsoft Office, Microsoft Edge (Chromium-based), Microsoft Exchange Server, Azure, .NET, Visual Studio Code, Microsoft Teams for Android, Nuance PowerScribe, and a wide range of other products.
Vulnerability Scope
the update includes 33 vulnerabilities rated Critical and 179 vulnerabilities rated Important. vulnerability types include Remote Code Execution, Privilege Escalation, Spoofing, Information Disclosure, Denial of Service, Security Feature Bypass, and Tampering.
Key Impact
- An emergency-rated remote code execution vulnerability (CVE-2026-32193) has been fixed in Microsoft Azure Kubernetes Service.
- In Microsoft Edge (Chromium-based), emergency and critical vulnerabilities have been fixed in multiple features, including ANGLE, GPU, WebView, Autofill, CustomTabs, and Messages.
- In Microsoft Office, Microsoft Word, Microsoft Excel, and Microsoft SharePoint, multiple critical remote code execution vulnerabilities and critical privilege escalation, spoofing, and information disclosure vulnerabilities were fixed.
- In the Windows family, vulnerabilities in various components including Active Directory Domain Services, HTTP.sys, Kerberos, Hyper-V, DHCP Client, Win32K – GRFX, Secure Boot, BitLocker, TCP/IP, Windows Kernel, and Windows DNS have been fixed.
- Vulnerabilities were also fixed in Microsoft Exchange Server, Microsoft Defender for Endpoint, Visual Studio Code, .NET, ASP.NET Core, GitHub Copilot and Visual Studio Code, and Microsoft Live Share Canvas SDK.
- Critical vulnerabilities have also been fixed in the Linux kernel – Microsoft MANA Network Driver and Nuance PowerScribe.
Response
Microsoft has advised users to update to the latest version. the patch can be installed automatically through Windows Update or by downloading it from the Microsoft Security Response Center (MSRC) update guide.
Notes
this update is a large, regular security patch across the Microsoft product family and should be applied quickly by users of affected products.