CVE-2026-81963
HIGH
Actively Exploited
microsoft
windows_11_23h2, windows_11_24h2, windows_11_25h2, windows_11_26h1, windows_server_2025
NVDCISA KEV
CVSS Score
7.8
Severity
HIGH
Published
Sep 08, 2026
Vendor
microsoft
This vulnerability is in the CISA Known Exploited Vulnerabilities Catalog. Active exploitation has been observed. Immediate patching is recommended.
Description
Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.