CVE-2026-69771

Summary

Improper link resolution before file access ('link following') in Windows Container Manager Service allows an authorized attacker to bypass a security feature locally.

Affected Software

VendorProductVersion RangeStatus
MicrosoftWindows 11 version 23H210.0.22631.0 < 10.0.22631.7582affected
MicrosoftWindows 11 Version 23H210.0.22631.0 < 10.0.22631.7582affected
MicrosoftWindows 11 Version 24H210.0.26100.0 < 10.0.26100.9445affected
MicrosoftWindows 11 Version 25H210.0.26200.0 < 10.0.26200.9445affected
MicrosoftWindows 11 version 26H110.0.28000.0 < 10.0.28000.2954affected

Weaknesses

  • CWE-59: CWE-59: Improper Link Resolution Before File Access ('Link Following')

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References