CVE-2026-58536
Published Jul 14, 2026
Last updated a month ago
CVSS high 7.8
Windows
Windows Cloud Files Mini Filter Driver
AI description
Automated description summarized from trusted sources.
CVE-2026-58536 is an elevation of privilege vulnerability found in the Windows Cloud Files Mini Filter Driver. This flaw is categorized as a "use after free" vulnerability. An authorized attacker can exploit this vulnerability to locally elevate their privileges within the system. Microsoft addressed CVE-2026-58536 as part of its July 2026 Patch Tuesday release, which included fixes for numerous other vulnerabilities across various products.
- Description
- Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
- Source
- secure@microsoft.com
- NVD status
- Analyzed
- Products
- windows_10_1809, windows_10_21h2, windows_10_22h2, windows_11_24h2, windows_11_25h2, windows_11_26h1, windows_server_2019, windows_server_2022, windows_server_2025
CVSS 3.1
- Type
- Secondary
- Base score
- 7.8
- Impact score
- 5.9
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
- secure@microsoft.com
- CWE-416
- Hype score
- Not currently trending
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*",
"matchCriteriaId": "643F21D8-3A5B-477D-AFFC-2451DDC472CC",
"versionEndExcluding": "10.0.17763.9020",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:*",
"matchCriteriaId": "A68E51D8-C76C-4C9E-9CBD-C7D4D4BCDFAA",
"versionEndExcluding": "10.0.17763.9020",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:*:*",
"matchCriteriaId": "ABDC3658-81AC-45E6-B847-ABDAFB65569A",
"versionEndExcluding": "10.0.19044.7548",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:*:*",
"matchCriteriaId": "B5E71945-39EC-4017-9B31-96717549BAC4",
"versionEndExcluding": "10.0.19045.7548",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:*:*",
"matchCriteriaId": "D89B6650-2390-42F7-A74F-48BB07CD63CA",
"versionEndExcluding": "10.0.26100.8875",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_11_25h2:*:*:*:*:*:*:*:*",
"matchCriteriaId": "2CF37591-BA8E-4E86-9B10-E32ADEF49357",
"versionEndExcluding": "10.0.26200.8875",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_11_26h1:*:*:*:*:*:*:*:*",
"matchCriteriaId": "2E3B3DE3-2650-4251-B8AB-AC5FD41FDE4A",
"versionEndExcluding": "10.0.28000.2525",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*",
"matchCriteriaId": "D0E1AB94-0B38-4BB7-94EB-988EA266D6D5",
"versionEndExcluding": "10.0.17763.9020",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*",
"matchCriteriaId": "9E9A0C18-3AD2-4E59-97AF-A2343E466929",
"versionEndExcluding": "10.0.20348.5386",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*",
"matchCriteriaId": "22BE2FE9-37B9-4FF2-B43A-60A3518E0F08",
"versionEndExcluding": "10.0.26100.33158",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]