SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-69289

HIGH · CVSS 7.8 EPSS 0.35%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A vulnerability in Windows Setup Files Cleanup allows an authorized attacker to exploit improper link resolution before file access, enabling local privilege escalation. This could allow the attacker to gain elevated permissions on the affected system, potentially leading to unauthorized access or control. Organizations using Windows should prioritize patching this vulnerability to mitigate the risk of local attacks.

CVE
CVE-2026-69289
Severity
HIGH
CVSS
7.8
EPSS
0.35%
Windows

Original NVD Description

Improper link resolution before file access ('link following') in Windows Setup Files Cleanup allows an authorized attacker to elevate privileges locally.