On February 23rd, an un-patched vulnerability in Internet Explorer and Edge browsers (CVE-2017-0037) was disclosed by Project Zero. The vulnerability reportedly allows remote code execution upon successful exploitation attempt. There is no report of the vulnerability being exploited in the wild.
Customers are advised to install all applicable updates as soon as they become available.
Microsoft Edge and IE: Type confusion in HandleColumnBreakOnColumnSpanningElement