SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-70584

HIGH · CVSS 7.8 EPSS 0.32%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A type confusion vulnerability in Windows Core Messaging allows authorized attackers to exploit resource access, potentially leading to local privilege escalation. This high-severity flaw (CVSS 7.8) primarily affects Windows systems and should be prioritized by organizations using these platforms to mitigate the risk of unauthorized access and control.

CVE
CVE-2026-70584
Severity
HIGH
CVSS
7.8
EPSS
0.32%
Windows

Original NVD Description

Access of resource using incompatible type ('type confusion') in Windows Core Messaging allows an authorized attacker to elevate privileges locally.