The Register·4 min read·medium

Microsoft breaks Patch Tuesday record with 974-CVE deluge

J
Jessica Lyons
Microsoft breaks Patch Tuesday record with 974-CVE deluge
AI Summary

Microsoft and Adobe have released a massive volume of security patches, including fixes for critical vulnerabilities already being exploited in the wild. Organizations are urged to prioritize updates for Adobe Commerce and Windows systems to prevent remote code execution and privilege escalation.

Why it matters

The record-breaking number of vulnerabilities highlights a growing cybersecurity crisis that threatens enterprise data integrity and operational security.

Dive DeeperCreate a free account to unlock

Adobe also brought goodies to the patch party and they deserve immediate attention

The vulnpocalypse is upon us, dear reader. Microsoft delivered a record number of patches to address 974 CVEs in its own products this month, including two bugs that Redmond says are already under exploitation.

September's record-breaking collection of security updates come after Microsoft served up 421 fixes in August , and 622 in July . We've seen the new normal and we are not impressed. Thanks, but no thanks, AI.

In addition to Microsoft’s massive patch drop, Adobe on Tuesday issued 10 bulletins addressing 172 CVEs , including a max-severity vulnerability exploited as a zero day in Magento and its successor product Adobe Commerce. Adobe on Monday shipped a hotfix for this one, tracked as CVE-2026-75650 and named StyleSmuggler, that gives unauthenticated attackers remote code execution.

Continue reading on Headlinne

Create a free account to read the full article.

Read full article →

Also covering this story

3 other newsrooms covered this event. We read each version separately.

technologybusiness

Get smarter about the news

Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.

Create free account

Already have an account? Sign in