Microsoft published details for CVE-2026-26132, an Important severity Windows Kernel elevation of privilege vulnerability caused by CWE-416 (use-after-free). The issue is scored CVSS 3.1: 7.8 with vector AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H, indicating exploitation requires local access and low complexity, with low privileges required and no user interaction, and could result in high impact to confidentiality, integrity, and availability.
Microsoft’s Security Update Guide entry provides standard machine-consumable references (e.g., PowerShell, API, and CSAF links) for tracking and patch management. No additional exploitation details, in-the-wild exploitation confirmation, or public proof-of-concept information is included in the provided material beyond the vulnerability classification and scoring.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
Microsoft published CVE-2026-26132 in its Security Update Guide as a Windows Kernel Elevation of Privilege vulnerability. Two references point to the same Microsoft advisory and represent a single disclosure event.
Microsoft added CVE-2026-25187 to its Security Update Guide as a Winlogon Elevation of Privilege vulnerability. The reference indicates public disclosure on Microsoft's March 10, 2026 update cycle.
3 references tracked. Mallory keeps watching after this page renders.
msrc.microsoft.com
Open sourcemsrc.microsoft.com
Open sourcemsrc.microsoft.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.