SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-54989

HIGH · CVSS 7 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-07-14 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in the Quality Windows Audio/Video Experience (QWAVE) service on Windows systems enables authorized attackers to elevate their privileges locally. This could allow them to execute arbitrary code with elevated rights, potentially compromising system integrity. Organizations using affected Windows versions should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-54989
Severity
HIGH
CVSS
7
EPSS
0.20%
Windows

Original NVD Description

Use after free in Quality Windows Audio/Video Experience (QWAVE) service allows an authorized attacker to elevate privileges locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)