KB5094122: what it fixes and who gets it

KB5094122 is a security update from Microsoft's June 2026 release for Windows 10 Version 1607.

Microsoft data read
76CVEs fixed
15rated Critical
0already exploited
Yesrestart required

Should you install it?

Yes. It closes holes Microsoft rates Critical, the most serious rating it uses. Windows Update installs it automatically on supported home PCs.

If the installation fails or the PC misbehaves afterwards, note the exact error code first: the fix depends on it. Our update troubleshooting guides are linked on this page.

Security fixes in KB5094122

CVETypeCVSSSeverity
CVE-2026-44815DHCP Client Service Remote Code Execution VulnerabilityRemote Code Execution9.8Critical
CVE-2026-47291HTTP.sys Remote Code Execution VulnerabilityRemote Code Execution9.8Critical
CVE-2026-42985Remote Desktop Client Remote Code Execution VulnerabilityRemote Code Execution8.8Critical
CVE-2026-47289Remote Desktop Client Remote Code Execution VulnerabilityRemote Code Execution8.8Critical
CVE-2026-45607Windows Hyper-V Remote Code Execution VulnerabilityRemote Code Execution8.4Critical
CVE-2026-42987Windows Deployment Services (WDS) Remote Code ExecutionRemote Code Execution8.1Critical
CVE-2026-33828Windows Device Health Attestation (DHA) Elevation of Privilege VulnerabilityElevation of Privilege7.8Critical
CVE-2026-44803Windows Graphics Component Remote Code Execution VulnerabilityRemote Code Execution7.8Critical
CVE-2026-44812Windows Graphics Component Remote Code Execution VulnerabilityRemote Code Execution7.8Critical
CVE-2026-48574Windows Media Remote Code Execution VulnerabilityRemote Code Execution7.8Critical
CVE-2026-42992Remote Desktop Client Remote Code Execution VulnerabilityRemote Code Execution7.5Critical
CVE-2026-44799Remote Desktop Client Remote Code Execution VulnerabilityRemote Code Execution7.5Critical
CVE-2026-44801Remote Desktop Client Remote Code Execution VulnerabilityRemote Code Execution7.5Critical
CVE-2026-47654Remote Desktop Client Remote Code Execution VulnerabilityRemote Code Execution7.5Critical
CVE-2026-47288Windows Kerberos Key Distribution Center (KDC) Remote Code ExecutionRemote Code Execution7.1Critical
CVE-2026-45602Windows Dynamic Host Configuration Protocol (DHCP) Tampering VulnerabilityTampering9.1Important
CVE-2026-47653Remote Desktop Client Remote Code Execution VulnerabilityRemote Code Execution8.8Important
CVE-2026-45599Windows UPnP Device Host Remote Code Execution VulnerabilityRemote Code Execution8.1Important
CVE-2026-45635Windows UPnP Device Host Remote Code Execution VulnerabilityRemote Code Execution8.1Important
CVE-2026-45588Secure Boot Security Feature Bypass VulnerabilitySecurity Feature Bypass7.9Important
CVE-2026-47656Windows Boot Manager Security Feature Bypass VulnerabilitySecurity Feature Bypass7.9Important
CVE-2026-48568Secure Boot Security Feature Bypass VulnerabilitySecurity Feature Bypass7.9Important
CVE-2026-48570Secure Boot Security Feature Bypass VulnerabilitySecurity Feature Bypass7.9Important
CVE-2026-48573Secure Boot Security Feature Bypass VulnerabilitySecurity Feature Bypass7.9Important
CVE-2026-48575Secure Boot Security Feature Bypass VulnerabilitySecurity Feature Bypass7.9Important
CVE-2026-48576Secure Boot Security Feature Bypass VulnerabilitySecurity Feature Bypass7.9Important
CVE-2026-48578Secure Boot Security Feature Bypass VulnerabilityElevation of Privilege7.9Important
CVE-2026-40404Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege VulnerabilityElevation of Privilege7.8Important
CVE-2026-40409Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege VulnerabilityElevation of Privilege7.8Important
CVE-2026-41092Microsoft Kinect Elevation of Privilege VulnerabilityElevation of Privilege7.8Important
CVE-2026-42905Windows DWM Core Library Elevation of Privilege VulnerabilityElevation of Privilege7.8Important
CVE-2026-42916NT OS Kernel Elevation of Privilege VulnerabilityElevation of Privilege7.8Important
CVE-2026-42980NT OS Kernel Elevation of Privilege VulnerabilityElevation of Privilege7.8Important
CVE-2026-42986Microsoft Graphics Component Elevation of Privilege VulnerabilityElevation of Privilege7.8Important
CVE-2026-42989Winlogon Elevation of Privilege VulnerabilityElevation of Privilege7.8Important
CVE-2026-45586Windows Collaborative Translation Framework (CTFMON) Elevation of Privilege VulnerabilityElevation of Privilege7.8Important
CVE-2026-45592Windows Internet (wininet.dll) Elevation of Privilege VulnerabilityElevation of Privilege7.8Important
CVE-2026-45605Windows Bluetooth Service Elevation of Privilege VulnerabilityElevation of Privilege7.8Important
CVE-2026-45636Windows NTFS Remote Code Execution VulnerabilityRemote Code Execution7.8Important
CVE-2026-45638Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityElevation of Privilege7.8Important
CVE-2026-45656UEFI Secure Boot Security Feature Bypass VulnerabilitySecurity Feature Bypass7.8Important
CVE-2026-45658Windows BitLocker Security Feature Bypass VulnerabilitySecurity Feature Bypass7.8Important
CVE-2026-48583Windows Kernel Elevation of Privilege VulnerabilityElevation of Privilege7.8Important
CVE-2026-8863UEFI Secure Boot Security Feature Bypass VulnerabilitySecurity Feature Bypass7.8Important
CVE-2026-42908Windows Remote Desktop Protocol (RDP) Information Disclosure VulnerabilityInformation Disclosure7.5Important
CVE-2026-42909Remote Desktop Client Remote Code Execution VulnerabilityRemote Code Execution7.5Important
CVE-2026-45639Windows Remote Desktop Protocol (RDP) Information Disclosure VulnerabilityInformation Disclosure7.5Important
CVE-2026-49160HTTP.sys Denial of Service VulnerabilityDenial of Service7.5Important
CVE-2026-34335Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityElevation of Privilege7.0Important
CVE-2026-41108Windows DNS Client Elevation of Privilege VulnerabilityElevation of Privilege7.0Important
CVE-2026-42836Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege VulnerabilityElevation of Privilege7.0Important
CVE-2026-42911Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityElevation of Privilege7.0Important
CVE-2026-42912Windows Telephony Service Elevation of Privilege VulnerabilityElevation of Privilege7.0Important
CVE-2026-45596Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityElevation of Privilege7.0Important
CVE-2026-45598Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityElevation of Privilege7.0Important
CVE-2026-45601Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityElevation of Privilege7.0Important
CVE-2026-45603Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityElevation of Privilege7.0Important
CVE-2026-45653Windows Kernel Elevation of Privilege VulnerabilityElevation of Privilege7.0Important
CVE-2026-47648Windows Storage Elevation of Privilege VulnerabilityElevation of Privilege7.0Important
CVE-2026-45608Windows DHCP Client Information Disclosure VulnerabilityInformation Disclosure6.8Important
Showing the 60 most severe of 76. The full list is in Microsoft's Security Update Guide.

Questions and experiences

Ask about this page: members and our editors answer. Reading is open; writing needs a free account.

0 comments

…

4,322 members already hereThey read, write, comment and vote. 0 verified · 31 joined this year

Cookies

We use essential cookies to run the platform. Analytics and marketing cookies are only turned on once you consent — you can change your choice at any time.