Junglewise Threat Intelligence

CVE-2026-50433: Microsoft Windows Media use after free privilege escalation

CVE-2026-50433 · Severity: high · CVSS 7.8 · Published 2026-07-14

Technologies: Microsoft Windows Server 2012, Microsoft Windows 10, Microsoft Windows 11. Vendors: Microsoft.

Executive brief

A security vulnerability has been identified in Windows Media, a component of the Microsoft Windows operating system used for handling multimedia content. An attacker who already has basic access to a computer could exploit this flaw to gain full administrative control over the system. This could allow them to view sensitive data, install malicious software, or disrupt business operations.

Technical details

A use-after-free vulnerability (CWE-416) exists in the Windows Media component of Microsoft Windows. The flaw is triggered when the system continues to use a memory pointer after it has been freed, leading to memory corruption. An attacker with local access and low-level user privileges can exploit this vulnerability to execute arbitrary code with SYSTEM privileges. The attack requires no user interaction and has a low complexity. Microsoft has released security updates to address this issue across affected versions of Windows 10, Windows 11, and Windows Server.

Affected products

  • Microsoft Windows 10 1607, 1809, 21H2, 22H2
  • Microsoft Windows 11 24H2, 25H2, 26H1
  • Microsoft Windows Server 2012 All versions

Timeline

  • 2026-07-14: disclosed: Initial disclosure by Microsoft
  • 2026-07-14: advisory: NVD entry published

References

Related threats