Rapid7 highlights two exploited flaws in September Patch Tuesday

Microsoft's September 2026 Patch Tuesday addressed 999 vulnerabilities, the highest in a single day, including 723 in Windows. Two flaws, CVE-2026-85880 and CVE-2026-81963, are being exploited in the wild. CVE-2026-85880 affects Windows but not Server 2025 or 11. CVE-2026-81963 has a CVSS score of 7.8. Google Chrome and Microsoft Edge patched CVE-2026-85046, but Microsoft did not issue an advisory. Upcoming product lifecycle changes include Windows 11 24H2 and Windows Server 2012 updates.

Original reporting
Published Sep 9, 2026, 12:43 AM UTC
Analysis
AlphAI AI DeskAI-generated
Added to AlphAI Sep 9, 2026, 10:28 AM UTC. Informational, not investment advice.
How this was made
AlphAI summarizes source reporting and applies a structured AI analysis for relevance, timing, sentiment and ticker impact. Always verify material claims with the original publisher.
Rapid7 highlights two exploited flaws in September Patch Tuesday — source image
Decision brief

The 30-second read

$MSFTBearishLow
01

Why it matters

The disclosed exploits may trigger short-term defensive trading in Microsoft and raise awareness of enterprise security risks.

02

Market read

Security vulnerability disclosures can cause brief price volatility in affected tech stocks, especially when active exploitation is confirmed.

03

What to watch

Potential for Microsoft to release emergency hotfixes or leverage the Rust rewrite narrative to reassure customers.

Relevance 5/10Novelty 5/10Timing: today

Background

Microsoft's September 2026 Patch Tuesday released 999 CVEs, the highest ever, with two actively exploited Windows flaws.

Company-level read

Ticker impact

$MSFTBearishMedium confidence
Context

Rapid7 reports Microsoft has two exploited vulnerabilities in September Patch Tuesday, indicating immediate security risk.

Expected impact

downside risk of 1-2% in the next trading session.

Evidence & confidence

Active exploitation can prompt enterprise customers to reassess exposure and may trigger short-term defensive positioning.

Market effects

Highlights ongoing vulnerability challenges for the software security sector.

May affect US and global enterprise software buyers monitoring patch risks.

Limited to firms with large Windows deployments; broader market impact minimal.

Counterpoint

Investors could view the disclosure as a temporary blip, expecting Microsoft to mitigate quickly.

Key entities

  • Microsoft

    US-listed software giant (MSFT) responsible for the patched products.

  • Rapid7

    Security research firm providing the exploitation analysis.

Related articles

$ROSTLow

A Microsoft executive will join Ross Stores’ board Oct. 1. A longtime director plans to retire.

Ross Stores (ROST) will add Shelley H. Bransten and Christian B. Johnson to its board on October 1, 2026, while Sharon D. Garrett retires. Bransten is a Microsoft executive, and Johnson is a partner at Freeman Spogli. The company reported $22.8 billion in fiscal 2025 revenue and operates 1,952 Ross Dress for Less and 376 dd's DISCOUNTS stores.

$MRVLMed

Marvell Stock (MRVL) Jumps on Exposure to $5B Market in Cloud Payment Push with Microsoft

Marvell Technology (MRVL) shares rose 5% to around $242 after announcing a new cloud-based payment security platform with Microsoft (MSFT) and Utimaco, targeting a $5B market by 2033. The platform, Azure Payment HSM v2, uses Marvell's LiquidSecurity hardware security modules (HSMs) and aims to simplify payment security for financial institutions. Analysts maintain a Strong Buy consensus rating with an average price target of $298.38, suggesting 24% upside.

$MSFTMed

OpenAI, Microsoft Leaders Admitted AI Threatens News Outlets (1)

OpenAI and Microsoft executives admitted in court documents that their AI tools substitute for news articles, threatening the industry. Microsoft CEO Satya Nadella and OpenAI's Nick Turley acknowledged the substitutive nature of their products. The Trump administration supported the companies' fair use argument. Microsoft's data shows significant drops in click-through rates for news content. The unsealed documents reveal internal discussions and projects related to AI training.

$NOKMed

Nokia Stock Adds 4.4% as Microsoft Fabric Becomes Its Network-Data Layer

Nokia's U.S. shares rose 4.4% after announcing a Microsoft-backed data layer for telecom networks. The integration combines Nokia Data Suite with Microsoft Fabric, aiming to automate network tasks. Nokia's ADR reached $10.585, with 82 million shares traded. The companies did not disclose financial details or customer orders. Nokia's Q2 sales grew 8%, with AI-related orders at €2.8 billion.

$NOKMed

Why Is Nokia Stock Trading Higher Today? - Microsoft (NASDAQ:MSFT), Nokia (NYSE:NOK)

Nokia (NYSE:NOK) shares rose 5% in premarket trading after expanding its AI-driven network automation partnership with Microsoft (NASDAQ:MSFT). The collaboration aims to accelerate AI-driven automation for telecom operators. Nokia's stock has gained nearly 70% in 2026. Earnings are expected on Oct 22, with analysts forecasting EPS of 8 cents and revenue of $5.81 billion. The stock has a Buy consensus rating with an average price target of $17.

$NOKHigh

Nokia stock jumps as Microsoft AI data partnership expands

Nokia (NOK) and Microsoft (MSFT) expanded their partnership to integrate Nokia Data Suite with Microsoft Fabric, aiming to automate telecom network operations. Nokia's stock rose 6.3% on the news, bringing its year-to-date gain to about 70%. The collaboration targets faster data processing and AI-driven network management, with initial use cases in VoNR assurance, geo-experience, and predictive maintenance.