Skip to content
Microsoft's Record Patch Tuesday Addresses 167 CVEs Including Zero-Days

Microsoft's Record Patch Tuesday Addresses 167 CVEs Including Zero-Days

First seen 23 Sep 2026, 19:54 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 23, 2026 at 20:58 UTC
  • Microsoft's October 2025 Patch Tuesday addressed 167 CVEs, the largest release to date.
  • Three zero-day vulnerabilities were included, with two actively exploited in the wild.
  • The volume of Microsoft patches has surged significantly, necessitating improved patch management strategies.

On October 2025 Patch Tuesday, Microsoft released patches for 167 CVEs, marking its largest update to date. Among these, three zero-day vulnerabilities were identified, with two actively exploited in the wild. The vulnerabilities span various Microsoft products, including Windows, Office, and Azure services. Notably, CVE-2025-24990 and CVE-2025-59230 were both added to the CISA KEV list on their publication date, October 14, 2025. The update included seven critical vulnerabilities, with elevation of privilege vulnerabilities making up nearly half of the total. The growing volume of patches reflects a significant increase in vulnerability counts, with September 2026 alone approaching 1,000 new CVEs. Security professionals are urged to prioritize patch management and adapt their strategies to cope with this surge in vulnerabilities.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2023-07-11
CVE-2023-35317 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2023-07-11
CVE-2023-32056 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2023-11-14
CVE-2023-36036 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2025-10-14
CVE-2025-24990 published
CVE-2025-24990, an elevation of privilege vulnerability, was disclosed and added to CISA KEV.
Tenable
2025-10-14
CVE-2025-59230 published
CVE-2025-59230, another critical vulnerability, was also disclosed and added to CISA KEV.
Tenable
2025-10-14
CVE-2025-55680 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2025-10-14
CVE-2025-24052 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2025-10-14
CVE-2025-59227 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2025-10-14
CVE-2025-59234 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2025-10-24
CVE-2025-59287 added to CISA KEV
CVE-2025-59287 was reported to be exploited in the wild and added to the KEV list.
Tenable

More articles in this cluster (3)

Following this threat?

Track Microsoft and CVE-2023-32056 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed