KB5101001
Security update fixing 17 CVEs
0Windows versions
17CVEs fixed · 0 critical
0Exploited or in CISA KEV
0Open known issues affecting it
—Restart required (per MSRC)
Known issues in this update
Windows release healthNo known issues listed
Windows release health lists no issues from this KB or the update it builds on.
Issues this update resolves
No resolved issues listed
Windows release health names no issues fixed by this KB.
Security fixes
17 Microsoft CVEs · most urgent first| CVE | Vulnerability | Severity | CVSS | EPSS | Impact | Status |
|---|---|---|---|---|---|---|
| CVE-2026-47304 | .NET Security Feature Bypass Vulnerability.NET | Important | 8.1 | 0.3% | Security Feature Bypass | Revised 21 Jul |
| CVE-2026-50646 | .NET Framework Remote Code Execution Vulnerability.NET Framework | Important | 7.8 | 4.0% | Remote Code Execution | Revised 20 Jul |
| CVE-2026-50649 | .NET Remote Code Execution Vulnerability.NET | Important | 7.8 | 4.0% | Remote Code Execution | Revised 21 Jul |
| CVE-2026-50650 | .NET Framework Elevation of Privilege Vulnerability.NET Framework | Important | 7.8 | 0.5% | Elevation of Privilege | Revised 20 Jul |
| CVE-2026-47302 | .NET Denial of Service Vulnerability.NET | Important | 7.5 | 1.2% | Denial of Service | Revised 20 Jul |
| CVE-2026-50304 | Windows Active Directory Federation Services Denial of Service VulnerabilityActive Directory Federation Services (AD FS) | Important | 7.5 | 1.2% | Denial of Service | Revised 21 Jul |
| CVE-2026-50355 | Windows Active Directory Federation Services Denial of Service VulnerabilityActive Directory Federation Services (AD FS) | Important | 7.5 | 1.2% | Denial of Service | Revised 21 Jul |
| CVE-2026-50368 | Windows Active Directory Federation Services Denial of Service VulnerabilityActive Directory Federation Services (AD FS) | Important | 7.5 | 1.2% | Denial of Service | Revised 21 Jul |
| CVE-2026-50411 | Windows Active Directory Federation Services Denial of Service VulnerabilityActive Directory Federation Services (AD FS) | Important | 7.5 | 1.2% | Denial of Service | Revised 21 Jul |
| CVE-2026-50525 | .NET Denial of Service Vulnerability.NET | Important | 7.5 | 1.2% | Denial of Service | Revised 21 Jul |
| CVE-2026-50527 | .NET Framework Denial of Service Vulnerability.NET Framework | Important | 7.5 | 1.2% | Denial of Service | Revised 20 Jul |
| CVE-2026-50647 | Active Directory Federation Server Denial of Service VulnerabilityActive Directory Federation Services (AD FS) | Important | 7.5 | 1.2% | Denial of Service | Revised 21 Jul |
| CVE-2026-50648 | .NET Framework Denial of Service Vulnerability.NET Framework | Important | 7.5 | 1.2% | Denial of Service | Revised 20 Jul |
| CVE-2026-50652 | Azure Active Directory Denial of Service VulnerabilityAzure Active Directory | Important | 7.5 | 1.7% | Denial of Service | Revised 21 Jul |
| CVE-2026-50653 | Azure Active Directory Denial of Service VulnerabilityAzure Active Directory | Important | 7.5 | 1.2% | Denial of Service | Revised 21 Jul |
| CVE-2026-50659 | .NET Spoofing Vulnerability.NET | Important | 6.5 | 0.7% | Spoofing | Revised 7 Aug |
| CVE-2026-50324 | Windows Active Directory Federation Services Denial of Service VulnerabilityActive Directory Federation Services (AD FS) | Important | 5.9 | 0.9% | Denial of Service | Revised 21 Jul |