SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-49784

HIGH · CVSS 7 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-07-14 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

A race condition vulnerability in the Microsoft Windows App Store allows authorized attackers to exploit improper synchronization of shared resources, potentially leading to local privilege escalation. This high-severity flaw could enable attackers to gain elevated access to system resources and sensitive data. Organizations using Microsoft Windows should prioritize remediation efforts to mitigate the risk of exploitation.

CVE
CVE-2026-49784
Severity
HIGH
CVSS
7
EPSS
0.15%
Microsoft Windows

Original NVD Description

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Windows App Store allows an authorized attacker to elevate privileges locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)