Privilege Escalation Vulnerability in Microsoft Windows Cluster Client Failover
CVE-2026-21251
Key Information:
- Vendor
Microsoft
- Status
- Vendor
- CVE Published:
- 10 February 2026
What is CVE-2026-21251?
A vulnerability in Windows Cluster Client Failover could allow an authorized attacker to exploit a use after free scenario, potentially granting them the ability to elevate their privileges locally. This issue, if exploited, can compromise system integrity and security, highlighting the need for prompt patching and addressing cybersecurity hygiene.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Windows Server 2016 (Server Core installation) x64-based Systems 10.0.14393.0 < 10.0.14393.8868
Windows Server 2016 x64-based Systems 10.0.14393.0 < 10.0.14393.8868
Windows Server 2019 (Server Core installation) x64-based Systems 10.0.17763.0 < 10.0.17763.8389
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved