CVE-2026-72971
Improper link resolution before file access ('link following') in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to perform tampering locally.
CVSS score5.5 / 10
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:NWeakness type (CWE)CWE-59
Vendorsmicrosoft
Affected products
| Vendors | Product | Versions |
|---|---|---|
| microsoft | windows 11 26h1 | < 10.0.28000.2704 |
Related articles
VulnerabilitiesMicrosoft Fixes 421 Vulnerabilities, Including an Exploited Zero-Day in `afd.sys`
On August 11, 2026, Microsoft released security updates addressing 421 vulnerabilities. One of them is CVE-2026-68820 , a high-severity flaw actively
VulnerabilitiesShieldBreak: PoC Bypasses Microsoft Defender Patch and Targets SYSTEM Privileges
ShieldBreak PoC bypasses MS Defender patch for CVE-2026-50656, granting SYSTEM access. Tested on Win11 25H2 & Server 2025. Update systems promptly.
VulnerabilitiesMicrosoft Fixes 398 Vulnerabilities as Exploited Windows Kernel Flaw Enters CISA KEV
Microsoft patched 398 vulnerabilities, including exploited Windows kernel flaw CVE-2026-68820 now in CISA KEV. Patch immediately.
This product uses the NVD API but is not endorsed or certified by the NVD.