SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-50421

HIGH · CVSS 7.8 EPSS 0.31%

Source: NVD + CISA KEV + EPSS · Published 2026-07-14 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

A type confusion vulnerability in Windows Connected User Experiences and Telemetry allows an authorized attacker to escalate privileges locally, potentially leading to unauthorized access to sensitive resources. Organizations using affected Windows products should prioritize patching this vulnerability to mitigate the risk of exploitation, particularly in environments where user permissions are critical.

CVE
CVE-2026-50421
Severity
HIGH
CVSS
7.8
EPSS
0.31%
Windows

Original NVD Description

Access of resource using incompatible type ('type confusion') in Windows Connected User Experiences and Telemetry allows an authorized attacker to elevate privileges locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)