Junglewise Threat Intelligence

CVE-2026-58626: Microsoft Windows Remote Desktop Services use after free

CVE-2026-58626 · Severity: high · CVSS 8.8 · Published 2026-07-14

Technologies: Microsoft Windows 10 Version 21H2, Microsoft Windows 11 Version 25H2, Microsoft Windows 11 Version 24H2, Microsoft Windows 11 Version 26H1, Microsoft Windows Server 2025, Microsoft Windows Server 2022, Microsoft Windows 10 Version 22H2, Microsoft Windows 10, Microsoft Windows 11. Vendors: Microsoft.

Executive brief

A security vulnerability exists in Windows Remote Desktop Services, a feature that allows users to access their computers remotely over a network. An authorized user could exploit this flaw to run unauthorized code on the system, potentially leading to a full system takeover or data theft. This poses a significant risk to corporate environments that rely on remote access for employees or server management.

Technical details

This vulnerability is classified as a Use After Free (CWE-416) within the Windows Remote Desktop Services component. An attacker with low-privileged credentials can exploit this flaw over the network without any user interaction. Successful exploitation allows for remote code execution (RCE) on the target system. The vulnerability affects multiple versions of Windows 10, Windows 11, and Windows Server. Microsoft has released security updates to address this issue.

Affected products

  • Microsoft Windows 10 Version 21H2 10.0.19044.0 to 10.0.19044.7548
  • Microsoft Windows 10 Version 22H2 10.0.19045.0 to 10.0.19045.7548
  • Microsoft Windows 11 Version 24H2 10.0.26100.0 to 10.0.26100.8875
  • Microsoft Windows 11 Version 25H2 10.0.26200.0 to 10.0.26100.8875
  • Microsoft Windows 11 version 26H1 10.0.28000.0 to 10.0.28000.2525
  • Microsoft Windows Server 2022 10.0.20348.0 to 10.0.20348.5386
  • Microsoft Windows Server 2025 10.0.26100.0 to 10.0.26100.33158

Timeline

  • 2026-07-14: advisory: Initial advisory published by Microsoft and NVD.
  • 2026-07-14: patched: Security updates made available via Microsoft Update Guide.

References

Related threats