#2
The Hacker News
general
May 21, 2026 at 10:55 UTC
Microsoft Warns of Two Actively Exploited Defender Vulnerabilities
By [email protected] (The Hacker News)
AI Summary
Microsoft disclosed two actively exploited zero-day vulnerabilities in Microsoft Defender: CVE-2026-41091 (CVSS 7.8), a privilege escalation flaw exploiting improper link resolution that allows attackers to gain SYSTEM privileges, and a separate denial-of-service vulnerability. Both bugs were exploited in the wild before patches were released. Security teams running Microsoft Defender should prioritize these patches immediately given confirmed active exploitation.
Relevance score: 85.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →