The Microsoft July 2024 security updates have been released and consist of 138 new patches to Microsoft products. Including third-party CVEs documented, the total number of CVEs reported is 141.
Of the Microsoft CVEs released, 5 are rated critical, 133 important, and 3 moderate in security. At the time of release, two of the CVEs are listed as being publicly known, one of which is a third-party update that is now being integrated into Microsoft products. Two are listed as under active attack.
The security updates apply to the following products, features and roles: Windows and Windows Components; Office and Office Components; NET and Visual Studio; Azure; Defender for IoT; SQL Server; Windows Hyper-V; Bitlocker and Secure(?) Boot; Remote Desktop; and Xbox.
See the list of KBs at the bottom of the page at June 2024 Security Updates - Release Notes - Security Update Guide - Microsoft (https://msrc.microsoft.com/update-guide/releaseNote/2024-Jul) for information regarding known issues with the security updates as well as the CVEs with FAQs, Mitigations and/or Workarounds. For specific information on Windows 11, versions 23H2 and 22H2, see KB5040422 (https://support.microsoft.com/en-us/topic/july-9-2024-kb5040442-os-builds-22621-3880-and-22631-3880-0864308e-61cc-413b-8194-0294331aba52). For Windows 10, Version 22H2 see KB5040427 (https://support.microsoft.com/en-us/topic/july-9-2024-kb5040427-os-builds-19044-4651-and-19045-4651-78458e76-9404-41b4-91b2-6d3cdcf4a530).
Recommended Reading: See Dustin Childs review and analysis in Zero Day Initiative -- The July 2024 Security Update Review (https://www.zerodayinitiative.com/blog/2024/7/9/the-july-2024-security-update-review).