CVE-2026-26143 is an improper input validation vulnerability in Microsoft PowerShell that permits unauthorized attackers to bypass a security feature through local access. The flaw affects PowerShell installations and requires user interaction to exploit. The vulnerability carries a HIGH severity rating with a CVSS score of 7.8, reflecting its potential for significant impact. The attack requires local access with no privileges needed, but involves relatively low complexity. Successful exploitation could result in high confidentiality, integrity, and availability impact, enabling attackers to compromise affected systems. There is currently no evidence of active exploitation in the wild, and the vulnerability does not appear on the CISA Known Exploited Vulnerabilities list. The EPSS score of 0.0009 indicates minimal real-world exploitation probability relative to other CVEs. However, the moderate FAUCET Risk Score of 48.0 suggests organizations should prioritize patching given the local attack vector and the potential for user-driven compromise.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 7.4, < 7.4.14CPE matchmatch criteria | cpe:2.3:a:microsoft:powershell:*:*:*:*:*:*:*:* | ||
>= 7.5, < 7.5.5CPE matchmatch criteria | cpe:2.3:a:microsoft:powershell:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.