HIGH

CVE-2026-81963

Microsoft Windows 11 23h2 2026-09-08 CVSS v3.1
CVSS
7.8
KEV

Description

Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.

Weakness (CWE)

CWE-59 Link Following (Symlink)
CWE-284 Improper Access Control

EPSS Score

0.63%
Probability of exploitation in next 30 days
48.8th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE