Patching stops the same path from being used again.
It doesn’t necessarily invalidate credentials already stolen.
If an attacker got a valid admin macaroon during the exposure window, access may persist until it’s explicitly revoked, regenerated, and services restarted.