# Patch Incidents in Hexnode UEM | Vulnerability & Patch Management Tracking

**Architecture Snapshot:** The **Patches** subtab provides centralized telemetry for vulnerability management. It consolidates Operating System (OS) and application-level security flaws, deployment failures, and unpatched endpoint states into a unified view to streamline remediation and enforce security posture.

How to access Patch Incidents?
------------------------------

To access the Patch incidents:

1. Login to the Hexnode console.
2. Navigate to the **Incidents** tab.
3. Access the **Patches** sub-tab.

Vulnerability Detection and Prioritization Logic
------------------------------------------------

Patch incidents are generated to minimize the organization’s risk exposure. By tracking the failure of update enforcement and the presence of known exploits, Hexnode enables administrators to maintain version consistency across the entire managed fleet.

Patch Incident Sources Matrix
-----------------------------

 SourceTechnical Scope and Remediation Impact**Vulnerabilities Detected**Flags incidents where **OS or App-level vulnerabilities** are identified. Triggers alerts for outdated versions with **known security flaws**.**Failed Patch Installations**Tracks **unsuccessful OS patch or app update** deployments. Identifies devices where the installation process failed, allowing for technical troubleshooting and retry logic.**Vulnerable Devices**Lists specific **endpoints missing critical updates**. This allows admins to isolate high-risk devices and prioritize them for manual or automated remediation efforts.Strategic Impact of Patch Monitoring
------------------------------------

- **Risk Reduction:** Eliminates security gaps by surfacing unpatched vulnerabilities in real-time.
- **Compliance Enforcement:** Ensures timely update deployment across diverse OS platforms.
- **Incident Isolation:** Rapidly identifies specific devices that remain at risk after a critical update rollout.

**Operational Use Case:** If a critical zero-day OS vulnerability is released and an admin pushes a patch, Hexnode will log any *Failed Patch Installations*. The admin can then focus resources on these specific failed devices to ensure the entire organization is protected.