Microsoft Patch Tuesday: Fixes 78 Flaws, But Zero-Days Keep Partying Like It’s 1999

Microsoft’s Patch Tuesday update tackles 78 security flaws, including five zero-days causing quite the chaos in the wild. With 28 vulnerabilities enabling remote code execution, and 21 offering privilege escalation, it’s a digital whack-a-mole. In a nod to mischief, even a zero-day in Microsoft Scripting Engine has joined the party.

Pro Dashboard

Hot Take:

Microsoft has dropped a patch bomb the size of a small moon, addressing 78 security flaws like it’s a minor to-do list. With five zero-days already causing havoc in the wild, it seems Microsoft’s Patch Tuesday is more like a Patch Every-Day-Ends-in-Y. Kudos for the proactive fix-fest, but my firewall is starting to feel like it’s on a roller coaster ride!

Key Points:

  • Microsoft patched 78 vulnerabilities, including five actively exploited zero-days.
  • The vulnerabilities range from Critical to Low in severity, with 28 allowing remote code execution.
  • Five zero-days include CVE-2025-30397, a scripting engine memory corruption vulnerability.
  • U.S. CISA added the five zero-days to its Known Exploited Vulnerabilities list.
  • Other vendors like ASUS, Broadcom, and Intel also released security updates.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?