Patch Tuesday, January 2026 Edition

Summary

Microsoft released patches for 113 vulnerabilities across its products in its January 2026 Patch Tuesday update. Eight of these vulnerabilities are rated as critical, and one is already being actively exploited in the wild. Users should apply these updates immediately.

IFF Assessment

FOE

The presence of actively exploited critical vulnerabilities in widely used software is detrimental to defenders.

Severity

10.0 Critical (AI Estimated)

Defender Context

Patch Tuesday is a critical event for defenders, requiring immediate attention to identify and apply relevant patches. The fact that one vulnerability is already being exploited necessitates prioritizing the patching process and monitoring for potential exploitation attempts. The increasing frequency and severity of vulnerabilities highlight the importance of robust vulnerability management programs and proactive threat hunting.

Read Full Story →