Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
Published: 2026-06-09
Microsoft addresses 198 CVEs in the largest Patch Tuesday release, including three zero-day vulnerabilities.
https://www.securityweek.com/new-windows-zero-day-exploit-rogueplanet-released/
https://www.infosecurity-magazine.com/news/microsoft-fixes-200-cves-in-june/
https://www.helpnetsecurity.com/2026/06/10/microsoft-patch-tuesday-rogueplanet/
https://therecord.media/microsoft-ships-largest-patch-tuesday-on-record
https://thehackernews.com/2026/06/microsoft-patches-record-206-flaws.html
https://www.theregister.com/patches/2026/06/09/ai-is-making-patch-tuesday-kinda-fun-again/5253225
https://www.securityweek.com/microsoft-patches-200-vulnerabilities/
https://krebsonsecurity.com/2026/06/a-record-breaking-patch-tuesday-for-june-2026/
Published: 2026-06-09
Updated: 2026-06-10
Named Vulnerability: YellowKeyNamed Vulnerability: Bitskrieg
Base Score: 7.2
Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C
Severity: High
Base Score: 6.8
Vector: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity: Medium
EPSS: 0.00099