SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-68847

HIGH · CVSS 7 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in Windows Connected User Experiences and Telemetry allows authorized attackers to elevate their privileges locally, potentially leading to unauthorized access and control over affected systems. Organizations using Windows should prioritize patching this vulnerability to mitigate the risk of exploitation, especially in environments where user permissions are not tightly controlled.

CVE
CVE-2026-68847
Severity
HIGH
CVSS
7
EPSS
0.24%
Windows

Original NVD Description

Use after free in Windows Connected User Experiences and Telemetry allows an authorized attacker to elevate privileges locally.