CyberRota Analysis
AI-GeneratedMicrosoft PowerShell is vulnerable to a code injection flaw that enables unauthorized attackers to bypass local security features. This high-severity vulnerability could lead to unauthorized access and execution of arbitrary code on affected systems. Organizations using Microsoft PowerShell should prioritize patching to mitigate potential exploitation risks.
CVE
CVE-2026-70338
Severity
HIGH
CVSS
7.8
EPSS
0.34%
Microsoft
Original NVD Description
Improper control of generation of code ('code injection') in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally.
Related CVEs
Other vulnerabilities affecting the same vendor(s)