Patch Tuesday August 2026: A zero-day WinSock driver hole under exploit, and a maximum severity SAP vulnerability
Summary
Microsoft's August Patch Tuesday addresses 398 vulnerabilities, including a zero-day exploit in the WinSock driver (CVE-2026-68820) that allows for privilege escalation. Additionally, SAP released patches for 29 vulnerabilities, with CVE-2026-58231 in SAP Commerce Cloud rated at maximum severity (CVSS 10.0). Two other zero-days were also disclosed by Microsoft.
IFF Assessment
The article details actively exploited zero-day vulnerabilities and a maximum severity SAP vulnerability, posing significant risks to organizations.
Severity
CISA KEV: Listed as actively exploited. Federal patch due: September 03, 2024. Known ransomware use: Unknown.
Defender Context
Defenders must prioritize patching the actively exploited WinSock driver zero-day (CVE-2026-68820) and the critical SAP vulnerability (CVE-2026-58231) to mitigate immediate threats. Awareness of publicly disclosed vulnerabilities like CVE-2026-62832 is also crucial, as they are more likely to be exploited.