CVE-2026-69305: Microsoft Windows Search Component Elevation of Privilege Vulnerability
Published Sep 8, 2026
·Updated
Microsoft Windows Search Component Elevation of Privilege Vulnerability
Other sources
Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges over a network.
— Microsoft
Affected Software
1 affected component
Microsoft Windows Search Component
Event History
Sep 8, 2026
CVE Published
via Microsoft·02:00 PM
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeakness
CVE Published
via MITRE·05:14 PM
Data Sourced
via MITRE·05:14 PM
DescriptionSeverity
Data Sourced
via NVD·06:18 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access and conditions does an attacker need to exploit this issue?
The attacker must already be authorized and able to reach the affected component over the network. Exploitation also requires user interaction and has high attack complexity.
2
What could successful exploitation affect?
The vulnerability is rated as having high impact on confidentiality, integrity, and availability. The CVSS vector indicates the security scope remains unchanged.