July 2026 Patch TuesdayKB5101650Normal patch window
Microsoft · KB5101650
KB5101650 release notes, known issues and patch guidance
This official Microsoft Patch Tuesday update addresses 378 linked CVEs for Windows 11 Version 24H2 for ARM64-based Systems, Windows 11 Version 24H2 for x64-based Systems, Windows 11 Version 25H2 for ARM64-based Systems, plus 1 more. Microsoft marks CVE-2026-50661 as publicly disclosed, without that disclosure alone changing the BlackTree action window.
- Product
- Windows 11 Version 24H2 for ARM64-based Systems, Windows 11 Version 24H2 for x64-based Systems, Windows 11 Version 25H2 for ARM64-based Systems, plus 1 more
- Release
- 10.0.26100.8875, 10.0.26200.8875
- Published
- 2026-07-14
- Updated
- 2026-07-14
Normal patch windowBlackTree recommended timinghigh confidence
378Vendor-linked CVEsComplete For Update
3Preserved revisionsCanonical history remains visible
1Known issuesVendor-documented context only
- Known issues
- Microsoft lists no known issues in the archived article.
- CVEs named in article
- The article does not name CVE identifiers directly; see the separately sourced patch relationships below.
- Deployment sections
- No prerequisite or restart section verified
- Snapshot
- Captured 27 Sept 2026, 14:00 UTC.
Action and evidence
Operational decision
- Action type
- Deploy Patch
- Platform
- Windows
- Restart
- yes
- Vendor signal
- Critical
Why this urgency
- Fix Available
- Routine Review
Evidence signals kept separate
- CISA KEV
- Unknown
- Confirmed exploitation
- Not Stated
- Vendor exploitability
- Not stated in the reviewed source
- Maximum CVSS
- 9.9 (CVSS 3.1, CVE-2026-57092)
- Maximum EPSS
- Not loaded for this patch record
Normal patch windowBlackTree recommends the normal approved patch window. No accepted exploitation or emergency signal currently justifies an out-of-band change by itself.
BlackTree urgency is an operational review window. It does not replace vendor severity or CVSS.
Environment override questions
- Is Windows 11 Version 24H2 for ARM64-based Systems, Windows 11 Version 24H2 for x64-based Systems, Windows 11 Version 25H2 for ARM64-based Systems, plus 1 more exposed to untrusted networks or content?
- Does this update affect an identity, management, backup or other control-plane system?
- Are compensating controls tested and monitored until the selected patch window?
Deployment context
Effects and caveats
- Review the vendor's KB5121767 guidance if the July release was withheld from an affected Dell device.
- Dynamic-update deployment guidance requires matching boot.stl content in installation media.
- Use the vendor update channel or update catalogue entry for the applicable product release.
- Plan a restart when the vendor remediation marks one as required.
Limited Intel IPF compatibility issueResolvedMicrosoft states that the update was temporarily unavailable for a limited number of affected Dell devices and that KB5121767 resolved the issue.
Known data gaps
- This record covers one Windows 11 cumulative release, not the full Microsoft July product or CVE set.
- The complete Security Update Guide relationship set was not imported.
- Restart requirements are not asserted in this bounded record.
- Confirm exact product, edition and architecture applicability in the Microsoft Security Update Guide before deployment.
Deployment plan
Guidance basis: Blacktree Generic
Prerequisites
- Confirm the affected product, edition, architecture and current build before deployment.
Sequencing
- Test the update in a representative ring before broad deployment.
Downtime
A restart is required. Plan service interruption and validation.
Rollback and recovery
- Capture the current version and a recoverable backup or snapshot before the change.
- Use the vendor-supported uninstall or recovery path when one is available.
Workarounds
- No vendor workaround is asserted unless it appears in the official advisory.
Provenance
Field verification
- Patch_identity_and_productsmsrc-cvrf/vendor-fixVerified Automatic · Retrieved 25 Aug 2026, 19:50 UTC
- Cve_relationships_and_exploit_statusmsrc-cvrf/vulnerabilityVerified Automatic · Retrieved 25 Aug 2026, 19:50 UTC
Open official vendor sourceRevision history
Canonical record changes
- Revision 12026-07-14
Initial July security update publication.
- Revision 22026-07-15
Microsoft amended the Intel IPF availability announcement.
- Revision 32026-08-05
Microsoft added a picture-password change note while retaining the same canonical KB record.
RevisedThis record has a material revision or correction state. Review the timeline and official source before deployment.
Publication review
The update identity, affected product mapping, restart signal, vendor severity, exploit status and complete CVE relationships were generated from the official MSRC CVRF document and passed structural validation. The project owner approved automatic Patch Tuesday publication. Each published record passed its own official-source completeness gate. Pending sources expose readiness only and prior approved records are retained on refresh failure.