CVE-2026-81963
- CVSS
- —
- EPSS
- —
- CISA KEV
- Added 2026-09-08, due 2026-09-22
- Exploitation
- No report
- Public exploits
- None seen
- State
- Unknown
Coverage

Actively exploitedTenable Research
Microsoft’s September 2026 Patch Tuesday addresses 964 CVEs (CVE-2026-81963, CVE-2026-85880)(opens the publisher's site in a new tab)
104Critical 860Important 0Moderate 0Low Microsoft addresses 964 CVEs, smashing July’s release as the largest Patch Tuesday release. This month’s updates include patches for two zero-days that were exploited in the wild. Microsoft patched a record 964 CVEs in its September 2026 Patch Tuesday…
Actively exploitedCISA advisories & alerts
CISA Adds Four Known Exploited Vulnerabilities to Catalog(opens the publisher's site in a new tab)
CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-75650 Adobe Commerce and Magento Improper Neutralization of Special Elements Used in a Template Engine Vulnerability CVE-2026-81963 Microsoft Windows Link…
What we observed
- kev addedcisa-kev