Darkreading
Microsoft Addresses Six Actively Exploited Zero-Day Vulnerabilities
First seen 11 Feb 2026, 03:18 UTC
•



+58
•45.3
Export
Article Content
Browse articles
On February 10, 2026, Microsoft released a security update addressing 59 vulnerabilities, including six zero-day flaws that were actively exploited prior to the patch. The vulnerabilities affect various Microsoft products, with three of them being security feature bypass flaws, allowing attackers to circumvent built-in protections. The affected CVEs were published and added to the CISA KEV list on the same day.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
2026-02-05
CVE-2026-24300 published
2026-02-10
CVE-2026-21519 published and added to CISA KEV
2026-02-10
CVE-2026-21510 published and added to CISA KEV
2026-02-10
CVE-2026-21533 published and added to CISA KEV
2026-02-10
CVE-2026-21525 published and added to CISA KEV
2026-02-10
CVE-2026-21513 published and added to CISA KEV
2026-02-10
CVE-2026-21514 published and added to CISA KEV
2026-02-10
Microsoft Patch Tuesday update released
2026-02-10
CVE-2026-21531 published
More articles in this cluster
Continue Reading
EU Officials Targeted by State-Sponsored Cyberattacks on Messaging Apps
Belgian State Security and Organizations Targeted by Cyberattacks
Romania Faces Surge in Cyberattacks Amid 12th Anniversary of Cybercrime Office
Major Data Breach at Canvas Affects 275 Million Users
TeamPCP Hackers Arrested for Major Supply Chain Attacks
PCPJack Malware Targets TeamPCP Victims for Credential Theft