Skip to main content

Update Windows now — Microsoft just fixed several dangerous exploits

Microsoft has just released a new patch, and this time around, the update comes with fixes for several dangerous and actively abused vulnerabilities and exploits in Windows.

A total of 68 vulnerabilities were addressed in the patch, many of them critical. Here’s what was fixed and how to make sure your Windows device is up to date.

Person sitting and using an HP computer with Windows 11.
Microsoft

Microsoft regularly releases updates for Windows 11 and Windows 10, but this time around, it seems to have addressed a large number of pressing issues that could have put your computer at risk. As part of this month’s Patch Tuesday, a total of 68 flaws were fixed, and 11 of those are classified as critical. According to Bleeping Computer, those critical flaws allowed potential attackers to remotely execute malicious code, as well as elevated privileges, within the system.

Recommended Videos

Broken down into various categories, Microsoft’s latest update contains 27 vulnerabilities related to the elevation of privileges, 16 that allowed remote code execution, 11 that disclosed information, six denial of service vulnerabilities, four that let the attacker bypass security features, and three related to spoofing.

Please enable Javascript to view this content

Perhaps more importantly, the patch fixes six zero-day vulnerabilities that were being actively exploited. According to Microsoft’s classification, a vulnerability is referred to as “zero-day” if it is actively exploited and/or known to the public, but doesn’t have an official fix yet.

The first of the exploits required that users with an affected version of Windows access a specific server. While there would be no way for the attacker to execute this exploit without the victim visiting a malicious server or website, once they did, the hacker would be granted remote code execution privileges. Another vulnerability granted attackers the ability to bypass Mark of the Web (MOTW) defenses, causing a lack of availability of several security features, including Protected View in Microsoft Office.

A couple of the other zero-day vulnerabilities granted system privileges, and that can lead to a complete loss of control over your PC. You can check out a full list of fixed issues here, courtesy of Bleeping Computer.

How to make sure your Windows is up to date

Windows 11 version 22h2 update.
Digital Trends

All in all, this seems like a patch that you don’t want to miss. The update should be rolling out to Windows users, and whether you’re using Windows 11 or Windows 10, you can head on over to your Windows Update and download it. There is also a longer guide on how to perform the update.

A simple way to do this is by clicking on the Windows icon in the bottom-left corner of your screen and typing in Windows Update, then clicking Check for updates. Next, click the button that lets you check for updates and download the new patch. If nothing is available yet, make sure to check back shortly — not all users always get every update at the same time.

Monica J. White
Monica is a computing writer at Digital Trends, focusing on PC hardware. Since joining the team in 2021, Monica has written…
Nearly six months later, you can finally try out Windows 11 Recall
Recall promotional image.

After a tumultuous initial reaction and months of reworking, Microsoft is finally releasing the first preview of its controversial Recall feature today. If you're a Windows Insider with a Qualcomm Copilot+ PC, you can install a new build of Windows 11 that includes both Recall and Click to Do.

If you're not part of the Windows Insider Program but you want to try out this feature, it's pretty easy to sign up on the Microsoft website. Recall was first announced back before any of the Copilot+ PCs were released and was meant to be available at launch, but an outcry of privacy and security concerns forced Microsoft to delay it.

Read more
The Windows 11 24H2 update is causing even more problems
Windows 11 logo on a laptop.

The Windows 11 24H2 update had already been giving users a real headache with problems such as bugs for visual layouts and flaws for certain wallpaper apps. And now, as Microsoft confirms in a support document, some people without administrative privileges can't change the time zone in the Date & Time view, among myriad other issues related to the important Windows 11 update.

A Feedback Hub post also reports a time issue after exiting Sleep Mode, specifically after about one out of every five overnight sleep cycles. There is also a report that the time is not syncing correctly following daylight saving time. Put differently, the update doesn't break the time zone, but only affects the toggle or makes it very difficult to modify it.

Read more
My quest to fully remove Microsoft Edge is finally complete
Microsoft Defender and Edge Security settings are open on a PC monitor.

I'm on a mission to eradicate Microsoft Edge from my PC.

It's not a slight against Microsoft -- I just don't particularly care for the Edge browser compared to some of the other best browsers out there. But Edge is different because Microsoft has tried -- and mostly failed -- to court its massive Windows user base, with some unsavory tactics, including making it nearly impossible to set a different default browser to massive, screen-overtaking popups when searching for the Chrome installer.

Read more