Home › Patch and vulnerability tracker › What's hot
The hottest Microsoft patches and CVEs right now, and what changed today
Hot Patches is Senserva's live shortlist of the Microsoft patches (KBs) and CVEs that matter most right now, ranked by the Senserva CVE Ranking, not a raw dump. Free, refreshed three times a day: 5 AM, 12:30 PM, and 7 PM US Central, and available as a Hot Patches JSON feed to build on.
Just this week's new exploitation is Exploited this week; the full references are the Microsoft patch tracker and the Microsoft CVE tracker.
See what just changed, and why it matters
CVEs and patches do not stand still: Severity gets rescored, CISA confirms exploitation, fixes get revised. These are the CVEs and Microsoft patches whose Senserva-tracked facts changed most recently. Click any row to see its dated change history.
- CVE-2026-52953 Critical changed 2026-07-16
affected products 3 to 2 - CVE-2026-52956 Critical changed 2026-07-16
affected products 3 to 2 - CVE-2026-53089 Critical changed 2026-07-16
affected products 3 to 2 - CVE-2026-53107 Critical changed 2026-07-16
affected products 3 to 2 - CVE-2026-53053 Critical changed 2026-07-16
affected products 3 to 2 - CVE-2026-52991 Critical changed 2026-07-16
affected products 3 to 2 - CVE-2026-53027 Critical changed 2026-07-16
affected products 3 to 2 - CVE-2026-53009 Critical changed 2026-07-16
affected products 3 to 2 - CVE-2026-53000 Critical changed 2026-07-16
affected products 3 to 2 - CVE-2026-53108 Critical changed 2026-07-16
affected products 3 to 2 - CVE-2026-53005 High changed 2026-07-16
affected products 3 to 2 - CVE-2026-53246 High changed 2026-07-16
affected products 3 to 2 - CVE-2026-53262 High changed 2026-07-16
affected products 3 to 2 - CVE-2026-53284 High changed 2026-07-16
tracked facts changed - CVE-2026-53179 High changed 2026-07-16
affected products 3 to 2 - CVE-2026-52961 High changed 2026-07-16
affected products 3 to 2 - CVE-2026-53178 High changed 2026-07-16
affected products 3 to 2 - CVE-2026-53091 High changed 2026-07-16
affected products 3 to 2 - CVE-2026-53132 High changed 2026-07-16
affected products 3 to 2 - CVE-2026-53078 High changed 2026-07-16
affected products 3 to 2 - CVE-2026-58058 Medium changed 2026-07-16
tracked facts changed - CVE-2026-53115 Medium changed 2026-07-16
affected products 3 to 2 - CVE-2026-53120 Medium changed 2026-07-16
affected products 3 to 2 - CVE-2026-53166 Medium changed 2026-07-16
affected products 3 to 2 - CVE-2026-53220 Medium changed 2026-07-16
affected products 3 to 2 - CVE-2026-52937 Medium changed 2026-07-16
affected products 3 to 2 - CVE-2026-53109 Medium changed 2026-07-16
affected products 3 to 2 - CVE-2026-53106 Medium changed 2026-07-16
affected products 3 to 2 - CVE-2026-53102 Medium changed 2026-07-16
affected products 3 to 2 - CVE-2026-53229 Medium changed 2026-07-16
affected products 3 to 2
Building a tool? The same ranking is a free JSON API: https://senserva.com/api/hot.json, with four ranked lists (all CVEs, Microsoft CVEs, non-Microsoft CVEs, and patches/KBs). No login or key. See the feeds and API page for the schema and rules. Free to use with attribution: "Patch Data Provided by Senserva".
This page updates three times a day, please link to it so others benefit from it and to keep current with its changes.
Hottest CVEs right now
The fifteen CVEs at the top of the Senserva CVE Ranking. Click any card for the full write-up and the fix.
Hottest Microsoft patches (KBs) right now
The fifteen Microsoft updates at the top of the Senserva CVE Ranking, the ones to deploy first.
Top 100 hottest CVEs
Sortable and filterable. Every row links to that CVE's page: what it is, who is exposed, and the update that fixes it.
Top 100 Hot Patches (Microsoft KBs)
The Microsoft updates behind the hottest CVEs, ranked to deploy in order.
From "what's hot" to "what's missing on my devices"
This page shows what the whole world is dealing with. Senserva shows which of these hot CVEs and KBs are actually missing on your Microsoft 365, Intune, Defender, and Entra ID estate, then ranks your gaps the same way: actively exploited first. It reads every layer read-only and names the exact KB to deploy.
Common questions
Each CVE and KB gets a score that blends real-world threat signal and search demand. Threat signal is CISA KEV (confirmed exploited in the wild) first, then known ransomware use, then FIRST.org EPSS exploit probability, then CVSS severity, with a recency boost so newly confirmed exploitation rises. When a credentialed Search Console pull is present, live search demand (how many people are looking the item up) is blended in too.
In Motion flags an item that is actively moving right now: either it was newly added to the CISA Known Exploited Vulnerabilities catalog in the last two to three weeks, it is tied to active ransomware campaigns, or it is climbing in live search demand. It is the short list to look at first.
The underlying feeds (Microsoft MSRC, CISA KEV, FIRST.org EPSS) refresh three times a day: 5 AM, 12:30 PM, and 7 PM US Central, and this ranking is rebuilt with them, so a newly exploited CVE or a fresh out-of-band KB shows up here within hours.
Yes. The same ranking is a free JSON API at https://senserva.com/api/hot.json: four ranked lists (all CVEs, Microsoft CVEs, non-Microsoft CVEs, and patches/KBs), each item with its rank, score, dates, and a link to the detail page. No login or key. RSS feeds and a Patch Tuesday calendar are on the feeds and API page. Free to use with attribution: "Patch Data Provided by Senserva".
Yes, free with no sign-in. Running Senserva adds the part a public ranking cannot: which of these hot CVEs and KBs are actually missing on your own devices, ranked so you fix the right things first.
