Junglewise Threat Intelligence

CVE-2026-50358: Microsoft Windows Media use after free privilege escalation

CVE-2026-50358 · Severity: high · CVSS 7 · Published 2026-07-14

Technologies: Microsoft Windows Server 2022, Microsoft Windows 10, Microsoft Windows Server 2019, Microsoft Windows Server 2016, Microsoft Windows 11. Vendors: Microsoft.

Executive brief

A security vulnerability has been identified in Windows Media components that could allow a user with limited access to gain full administrative control over a computer. This flaw affects various versions of Windows 10, Windows 11, and Windows Server. To exploit this, an attacker must already have a way to run code on the target system, but if successful, they could bypass security restrictions to access sensitive data or install malicious software.

Technical details

A use-after-free (UAF) vulnerability exists in Windows Media (CWE-416) due to improper memory management. An attacker with local access and low privileges can exploit this flaw to execute code in a higher-privileged context, potentially gaining SYSTEM-level access. The attack complexity is rated as high, suggesting that successful exploitation may depend on specific timing or race conditions. The vulnerability affects a wide range of Windows deployments, including Windows 10, Windows 11, and Windows Server 2016 through 2022. Microsoft has released security updates to address this issue.

Affected products

  • Microsoft Windows 10 Version 1607 / 1809 / 21H2 / 22H2 Multiple versions prior to July 2026 updates
  • Microsoft Windows 11 Version 24H2 / 25H2 / 26H1 Multiple versions prior to July 2026 updates
  • Microsoft Windows Server 2016 / 2019 / 2022 Multiple versions prior to July 2026 updates

Timeline

  • 2026-07-14: disclosed
  • 2026-07-14: advisory

References

Related threats