Elevation of Privilege in Windows Kernel Affects Microsoft Products
CVE-2026-62788

7HIGH

What is CVE-2026-62788?

A use after free vulnerability in the Windows Kernel allows an attacker with local access to the system to elevate their privileges. By exploiting this flaw, an unauthorized user could gain access to restricted functionalities within the operating system, potentially leading to unauthorized actions and data exposure. It is critical for Microsoft users to apply the necessary patches to safeguard their systems against this vulnerability. For more information, refer to the official advisory.

Affected Version(s)

Windows 11 version 23H2 ARM64-based Systems 10.0.22631.0 < 10.0.22631.7517

Windows 11 Version 23H2 x64-based Systems 10.0.22631.0 < 10.0.22631.7517

Windows 11 Version 24H2 ARM64-based Systems 10.0.26100.0 < 10.0.26100.9168

References

CVSS V3.1

Score:
7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.