CyberRota Analysis
AI-GeneratedA type confusion vulnerability in Windows Connected User Experiences and Telemetry allows an authorized attacker to escalate privileges locally, potentially leading to unauthorized access to sensitive resources. Organizations using affected Windows products should prioritize patching this vulnerability to mitigate the risk of exploitation, particularly in environments where user permissions are critical.
CVE
CVE-2026-50421
Severity
HIGH
CVSS
7.8
EPSS
0.31%
Windows
Original NVD Description
Access of resource using incompatible type ('type confusion') in Windows Connected User Experiences and Telemetry allows an authorized attacker to elevate privileges locally.
Related CVEs
Other vulnerabilities affecting the same vendor(s)