AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-61937

HIGH · CVSS 7.8 EPSS 0.31%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

A vulnerability in the Windows HTTP.sys component allows authorized attackers to exploit an integer overflow or wraparound, potentially leading to local privilege escalation. This could enable attackers to gain elevated access to system resources and execute arbitrary code with higher privileges. Organizations using affected Windows systems should prioritize patching this vulnerability to mitigate the risk of unauthorized access and system compromise.

CVE
CVE-2026-61937
Severity
HIGH
CVSS
7.8
EPSS
0.31%
Windows

Original NVD Description

Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)