CVE-2026-62749: Windows Kernel Elevation of Privilege Vulnerability
Published Aug 11, 2026
·Updated
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Other sources
Windows Kernel Elevation of Privilege Vulnerability
— Microsoft
Affected Software
15 affected componentsFixes available
Microsoft Windows 11=26H1
10.0.28000.2704
Microsoft Windows 11=26H1
10.0.28000.2704
Microsoft Windows Server 2025<10.0.26100.33296, <10.0.26100.33222
10.0.26100.3329610.0.26100.33222
Microsoft Windows Server 2025<10.0.26100.33296, <10.0.26100.33222
10.0.26100.3329610.0.26100.33222
Microsoft Windows 11=24H2
10.0.26100.916810.0.26200.9106
Microsoft Windows 11=24H2
10.0.26100.916810.0.26100.9106
Microsoft Windows 11=25H2
10.0.26200.916810.0.26200.9106
Microsoft Windows 11=25H2
10.0.26200.916810.0.26200.9106
Microsoft Windows 11 24h2<10.0.26100.9106
Microsoft Windows 11 24h2<10.0.26100.9106
Microsoft Windows 11 25h2<10.0.26200.9106
Microsoft Windows 11 25h2<10.0.26200.9106
Microsoft Windows 11 26h1<10.0.28000.2704
Microsoft Windows 11 26h1<10.0.28000.2704
Microsoft Windows Server 2025<10.0.26100.33222
Remediation
Event History
Aug 11, 2026
CVE Published
via Microsoft·02:00 PM
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·02:00 PM
Affected Software
Updated
via Microsoft·02:00 PM
Affected Software
Updated
via Microsoft·02:00 PM
Description
CVE Published
via MITRE·05:06 PM
Data Sourced
via MITRE·05:06 PM
DescriptionSeverity
Data Sourced
via NVD·05:18 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-62749?
The severity of CVE-2026-62749 is rated high with a score of 7.
2
How do I fix CVE-2026-62749?
CVE-2026-62749 can be fixed by applying the available security patch from Microsoft.
3
What systems are affected by CVE-2026-62749?
CVE-2026-62749 affects Microsoft Windows 11 and Microsoft Windows Server 2025 along with specific builds of Windows 11.
4
What type of vulnerability is CVE-2026-62749?
CVE-2026-62749 is a Windows Kernel Elevation of Privilege vulnerability caused by use after free.
5
Can an attacker exploit CVE-2026-62749 remotely?
No, CVE-2026-62749 requires local access for an authorized attacker to elevate privileges.