Microsoft Patch Tuesday: Fixes 78 Flaws, But Zero-Days Keep Partying Like It’s 1999
Microsoft’s Patch Tuesday update tackles 78 security flaws, including five zero-days causing quite the chaos in the wild. With 28 vulnerabilities enabling remote code execution, and 21 offering privilege escalation, it’s a digital whack-a-mole. In a nod to mischief, even a zero-day in Microsoft Scripting Engine has joined the party.

Hot Take:
Microsoft has dropped a patch bomb the size of a small moon, addressing 78 security flaws like it’s a minor to-do list. With five zero-days already causing havoc in the wild, it seems Microsoft’s Patch Tuesday is more like a Patch Every-Day-Ends-in-Y. Kudos for the proactive fix-fest, but my firewall is starting to feel like it’s on a roller coaster ride!
Key Points:
- Microsoft patched 78 vulnerabilities, including five actively exploited zero-days.
- The vulnerabilities range from Critical to Low in severity, with 28 allowing remote code execution.
- Five zero-days include CVE-2025-30397, a scripting engine memory corruption vulnerability.
- U.S. CISA added the five zero-days to its Known Exploited Vulnerabilities list.
- Other vendors like ASUS, Broadcom, and Intel also released security updates.
Already a member? Log in here