Monthly security release (Patch Tuesday) for Windows 11, version 23H2

Is it safe to deploy?

Everything in the July 2026 Patch Tuesday cycle
1Windows version
17CVEs fixed · 1 critical
0Exploited or in CISA KEV
0Open known issues affecting it
YesRestart required (per MSRC)

Applies to

From Microsoft's release-information tables
Servicing branchOS buildReleaseAvailable
Windows 11, version 23H2 22631.7376 B 2026-07 B 14 Jul 2026

Known issues in this update

Windows release health

No known issues listed

Windows release health lists no issues from this KB or the update it builds on.

Issues this update resolves

No resolved issues listed

Windows release health names no issues fixed by this KB.

Security fixes

17 Microsoft CVEs · most urgent first
CVE Vulnerability Severity CVSSEPSSImpact Status
CVE-2026-42982 Windows Secure Kernel Mode Elevation of Privilege VulnerabilityWindows Secure Kernel Mode Critical 7.80.3%Elevation of Privilege
CVE-2026-42990 SQL Server ODBC driver Elevation of Privilege VulnerabilitySQL Server ODBC driver Important 9.81.0%Remote Code Execution
CVE-2026-49172 Windows FTP Service Remote Code Execution VulnerabilityWindows FTP Service Important 9.81.0%Remote Code Execution
CVE-2026-44800 Windows Push Notifications Elevation of Privilege VulnerabilityWindows Push Notifications Important 7.80.2%Elevation of Privilege
CVE-2026-50471 Windows NTFS Remote Code Execution VulnerabilityWindows NTFS Important 7.80.5%Remote Code Execution
CVE-2026-58601 Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege VulernabilityVirtual Hard Disk (VHD) Miniport Driver Important 7.80.3%Elevation of Privilege
CVE-2026-40378 Windows Local Security Authority Subsystem Service (LSASS) Denial of Service VulnerabilityWindows Local Security Authority Subsystem Service (LSASS) Important 7.51.2%Denial of Service
CVE-2026-50696 Internet Key Exchange (IKE) Protocol Denial of Service VulnerabilityWindows Internet Key Exchange (IKE) Protocol Important 7.51.2%Denial of Service Revised 15 Sep
CVE-2026-58640 Windows NTFS Remote Code Execution VulnerabilityWindows NTFS Important 7.30.4%Remote Code Execution Revised 21 Jul
CVE-2026-48571 Windows App Package Installer Elevation of Privilege VulnerabilityWindows App Installer Important 7.00.3%Elevation of Privilege
CVE-2026-48572 Windows App Package Installer Elevation of Privilege VulnerabilityWindows App Installer Important 7.00.2%Elevation of Privilege
CVE-2026-56173 Windows WebView Elevation of Privilege VulnerabilityWindows WebView Important 7.00.3%Elevation of Privilege
CVE-2026-58629 DirectX Graphics Kernel Elevation of Privilege VulnerabilityWindows DirectX Important 7.00.3%Elevation of Privilege
CVE-2026-34348 Windows Event Logging Service Information Disclosure VulnerabilityWindows Event Logging Service Important 6.51.0%Information Disclosure
CVE-2026-33842 Windows File Explorer Information Disclosure VulnerabilityWindows File Explorer Important 5.50.5%Information Disclosure
CVE-2026-34328 Windows Audio Service Information Disclosure VulnerabilityWindows Audio Service Important 5.50.5%Information Disclosure
CVE-2026-34346 Windows Ancillary Function Driver for WinSock Information Disclosure VulnerabilityWindows Ancillary Function Driver for WinSock Important 5.50.3%Information Disclosure
ChangeIntel is an independent tool and is not affiliated with or endorsed by Microsoft. Microsoft, Windows, Microsoft 365, Azure, and related names are trademarks of the Microsoft group of companies. Data comes from public sources listed on Sources; every item links to its original page. Dates and statuses can change after they are read. Built by Evotec. This is the public demo. It can also run on your own server, with your Microsoft 365 tenant and device data kept inside your network; Evotec can help you deploy and extend it.