CVE-2026-21513

⚠ KEVEPSS 28.0%

Microsoft MSHTML Framework Protection Mechanism Failure Vulnerability

Added to CISA KEV: 2/10/2026

Description

Microsoft MSHTML Framework contains a protection mechanism failure vulnerability that could allow an unauthorized attacker to bypass a security feature over a network.

Affected packages (0)

No package mapping in OSV.