SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-42900

HIGH · CVSS 8.1 EPSS 0.39%

Source: NVD + CISA KEV + EPSS · Published 2026-07-14 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

A race condition vulnerability in the Windows App Store allows unauthorized attackers to exploit improper synchronization, potentially leading to privilege escalation over a network. This high-severity flaw poses significant risks to systems running Windows, particularly in environments where the App Store is utilized for application management. Organizations using Windows should prioritize patching this vulnerability to mitigate the risk of unauthorized access and potential system compromise.

CVE
CVE-2026-42900
Severity
HIGH
CVSS
8.1
EPSS
0.39%
Windows

Original NVD Description

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Store allows an unauthorized attacker to elevate privileges over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)