Home / May 22, 2026 / Story
0
#2 The Hacker News general May 21, 2026 at 10:55 UTC

Microsoft Warns of Two Actively Exploited Defender Vulnerabilities

By [email protected] (The Hacker News)

AI Summary

Microsoft disclosed two actively exploited zero-day vulnerabilities in Microsoft Defender: CVE-2026-41091 (CVSS 7.8), a privilege escalation flaw exploiting improper link resolution that allows attackers to gain SYSTEM privileges, and a separate denial-of-service vulnerability. Both bugs were exploited in the wild before patches were released. Security teams running Microsoft Defender should prioritize these patches immediately given confirmed active exploitation.

Relevance score: 85.0/100

# More from May 22