Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-81963

HIGH Actively Exploited microsoft windows_11_23h2, windows_11_24h2, windows_11_25h2, windows_11_26h1, windows_server_2025 NVDCISA KEV
CVSS Score 7.8
Severity HIGH
Published Sep 08, 2026
Vendor microsoft
This vulnerability is in the CISA Known Exploited Vulnerabilities Catalog. Active exploitation has been observed. Immediate patching is recommended.

Description

Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.

References