A late-April 2026 intrusion and outage hit the learning platform used by millions of students; the extortion crew claimed a massive haul, and schools spent the week assessing exposure.
The April 14, 2026 update patches 163 vulnerabilities — 8 rated critical — with a SharePoint flaw and a Windows Shell flaw both confirmed under active exploitation.
On March 5, 2026, CISA added five flaws with confirmed in-the-wild exploitation to the catalog that sets binding patch deadlines for federal agencies — and sensible ones for everyone else.
Emergency directive ED 26-03, issued February 25, 2026, requires federal agencies to patch actively exploited Cisco SD-WAN vulnerabilities including an authentication bypass rated critical.
Oracle's first Critical Patch Update of 2026 shipped 337 security fixes across its product family on January 20, and analysis shows 27 issues remotely exploitable without authentication.
Microsoft shipped its January 2026 security fixes on January 13, and state advisories flag remote code execution bugs as the most severe issues patched.