CVE-2026-41091

Improper link resolution before file access ('link following') in Microsoft Defender allows an authorized attacker to elevate privileges locally.

high 7.8 CVSS 3.1
Published: May 20, 2026
Modified: May 20, 2026