securityonline.info 8/19/2026, 5:03:02 AM · external

BeyondTrust patches CVE-2026-40144/45 in Windows endpoint tool

BeyondTrust patches CVE-2026-40144/45 in Windows endpoint tool
CyberSIXT Evidence Panel
Primary Source beyondtrust.com
CISA KEV Not in KEV
Patch Patch Status Unknown

TODAY'S critical alert highlights four active exploits detected, including two high-severity vulnerabilities in BeyondTrust’s Endpoint Privilege Management for Windows. These are identified as CVE-2026-40144 and CVE-2026-40145, both allowing for local privilege escalation. The highest severity score is 7.3, and although there is currently no confirmed exploitation, patches for both vulnerabilities are available in version 26.1.2.

The CVE details include: CVE-2026-40144 with a focus on memory corruption, and CVE-2026-40145 involving a control protections bypass. Users are urged to update their systems to mitigate risks.

View Primary Source Via securityonline.info

Article by CyberSIXT