CVE-2026-21519

⚠ KEVEPSS 4.5%

Microsoft Windows Type Confusion Vulnerability

Added to CISA KEV: 2/10/2026

Description

Microsoft Desktop Windows Manager contains a type confusion vulnerability that could allow an authorized attacker to elevate privileges locally.

Affected packages (0)

No package mapping in OSV.