AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-62889

HIGH · CVSS 8.1 EPSS 0.56%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

A double free vulnerability in the Windows Secure Socket Tunneling Protocol (SSTP) can be exploited by unauthorized attackers to execute arbitrary code remotely. This high-severity flaw poses significant risks to systems utilizing SSTP for secure communications. Organizations relying on Windows for secure tunneling should prioritize patching to mitigate potential exploitation.

CVE
CVE-2026-62889
Severity
HIGH
CVSS
8.1
EPSS
0.56%
Windows

Original NVD Description

Double free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)