All CVEs
Vulnerability intelligence

CVE-2026-62832

Microsoft Windows 10 Version 21H2 CWE-59

Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorized attacker to elevate privileges locally.

CVSS Score
7.8
High
EPSS — Exploit Probability
3.3%
Riskier than 88% of all CVEs · checked 2026-09-24
Exploitation
Not in CISA KEV
KEV does not include every exploited vulnerability
Remediation
Patch available
Vendor fix published
NVD entry Vendor patch PoC / advisory

6 articles across 6 outlets · first covered Aug 11, 2026 · latest Aug 12, 2026

Associated threat actors

Coverage timeline

Related CVEs — Microsoft