KB5094128: Overview with user sentiment and feedback

Last Updated July 20, 2026

Probability of successful installation and continued operation of the machine

0%
20%
40%
60%
80%
100%
60%
Known Issues

Overview

KB5094128 is a cumulative security update for Windows Server 2022 released on June 9, 2026 (OS Build 20348.5256). This update includes the latest security fixes and quality improvements, along with non-security updates from the previous month's optional preview release. The patch addresses multiple security vulnerabilities and introduces enhancements to Secure Boot certificate handling, File Explorer functionality, and application reliability.

General Purpose

  • Secure Boot Enhancements: Improved device targeting for automatic Secure Boot certificate distribution with new Group Policy controls for data limiting
  • File Explorer Improvements: Enhanced search functionality including Chinese text support and UTF-8 file handling without byte order marks
  • Windows Push Notification Services (WNS) Fix: Resolved issues causing Microsoft Outlook and other WNS-dependent applications to hang
  • Folder Customization Security Hardening: Updated desktop.ini file processing with potential visual changes to custom folder icons
  • Font Updates: Added Saudi Riyal currency symbol to Windows fonts for improved text consistency
  • Servicing Stack Update: Included KB5094147 to improve update installation reliability

General Sentiment

The update has generated mixed community reception. While the security fixes and WNS application reliability improvements are viewed positively, there is notable frustration regarding metadata inconsistencies in the official file list. A significant issue emerged where the published CSV file listed ntoskrnl.exe version 10.0.20348.5257, while the actual installed version is 10.0.20348.5256, causing vulnerability scanning tools to incorrectly flag systems as unpatched. Microsoft acknowledged and corrected this documentation error. Additionally, multiple known issues affecting BitLocker, Office application compatibility, and File Explorer functionality have tempered enthusiasm for immediate deployment.

Known Issues

  • BitLocker Recovery Key Requirement: Devices with specific unrecommended BitLocker Group Policy configurations may require BitLocker recovery key entry on first restart after installation (limited scope, primarily enterprise environments)
  • WSUS Error Reporting: Windows Server Update Services does not display synchronization error details after installing this update (temporary measure for security vulnerability CVE-2025-59287)
  • Microsoft Office Launch Failures: Third-party applications using OLE automation may fail to launch Microsoft Office applications or open documents (affects CCH Engagement, Workpaper Manager, dental software, Zotero, and similar applications)
  • Recycle Bin File Name Display: Confirmation dialog displays internal Recycle Bin file names (e.g., $Rxxxxx.ext) instead of original file names when permanently deleting items
  • OneDrive File Explorer Shortcut: OneDrive shortcut in File Explorer may not function when File Explorer runs with administrative privileges
  • Custom Folder Icons: Some users may experience missing custom folder icons or localized folder names for downloaded or remote content due to security hardening changes

Disclaimer: We take measures to ensure that AI-generated content is of the highest possible quality, but we cannot guarantee its accuracy and recommend that users do their own independent research. Generated on 2026-07-20 07:25 PM

Back to Knowledge Base Catalog