KB5123300: what it fixes and who gets it

KB5123300 is a security update from Microsoft's September 2026 release for Skype for Business Server 2019 CU8.

Microsoft data read
10CVEs fixed
1rated Critical
0already exploited
Norestart required

Should you install it?

Yes. It closes holes Microsoft rates Critical, the most serious rating it uses. Windows Update installs it automatically on supported home PCs.

If the installation fails or the PC misbehaves afterwards, note the exact error code first: the fix depends on it. Our update troubleshooting guides are linked on this page.

Security fixes in KB5123300

CVETypeCVSSSeverity
CVE-2026-66302Skype for Business Remote Code Execution VulnerabilityRemote Code Execution9.8Critical
CVE-2026-69646Skype for Business Spoofing VulnerabilitySpoofing8.3Important
CVE-2026-66304Skype for Business Information Disclosure VulnerabilityInformation Disclosure7.5Important
CVE-2026-66307Skype for Business and Lync Denial of Service VulnerabilityDenial of Service7.5Important
CVE-2026-66305Skype for Business Spoofing VulnerabilitySpoofing7.1Important
CVE-2026-63523Skype for Business Spoofing VulnerabilitySpoofing6.5Important
CVE-2026-66303Skype for Business and Lync Denial of Service VulnerabilityDenial of Service6.5Important
CVE-2026-66306Skype for Business Information Disclosure VulnerabilityInformation Disclosure6.5Important
CVE-2026-66308Skype for Business and Lync Denial of Service VulnerabilityDenial of Service6.5Important
CVE-2026-69642Skype for Business Spoofing VulnerabilitySpoofing6.5Important

Questions and experiences

Ask about this page: members and our editors answer. Reading is open; writing needs a free account.

0 comments

…

4,322 members already hereThey read, write, comment and vote. 0 verified · 31 joined this year

Cookies

We use essential cookies to run the platform. Analytics and marketing cookies are only turned on once you consent — you can change your choice at any time.