Junglewise Threat Intelligence

CVE-2026-58634: Microsoft Windows Desktop Window Manager privilege escalation

CVE-2026-58634 · Severity: high · CVSS 7.8 · Published 2026-07-14

Executive brief

A security vulnerability has been identified in the Microsoft Windows Desktop Window Manager, the component responsible for rendering the visual interface of the operating system. An attacker who already has basic access to a computer could exploit this flaw to gain full administrative control over the system. This could allow them to view sensitive data, install malicious software, or disrupt business operations.

Technical details

A use-after-free (UAF) vulnerability exists in the Microsoft Desktop Window Manager (DWM.exe) due to improper memory management. A locally authenticated attacker with low privileges can exploit this by triggering a condition where the system attempts to use memory that has already been freed, leading to arbitrary code execution in a high-privilege context. The attack vector is local, requiring no user interaction, and results in a total compromise of confidentiality, integrity, and availability. Microsoft has released security updates to address this issue in affected versions of Windows 11.

Affected products

  • Microsoft Windows 11 version 26H1 10.0.28000.0 to 10.0.28000.2525

Timeline

  • 2026-07-14: advisory: Initial advisory published by Microsoft and NVD
  • 2026-07-14: patched: Security updates made available via Microsoft Update Guide

References

Related threats