Junglewise Threat Intelligence

CVE-2026-68835: Microsoft Windows Print Spooler use-after-free privilege escalation

CVE-2026-68835 · Severity: high · CVSS 7.1 · Published 2026-09-08

Technologies: Microsoft Windows. Vendors: Microsoft.

Executive brief

Windows Print Spooler is a core Windows system component responsible for managing print jobs and printer communication. A use-after-free vulnerability in this component allows an authenticated attacker on the network to gain elevated privileges on affected systems, potentially leading to complete system compromise.

Technical details

A use-after-free vulnerability exists in the Windows Print Spooler component, where freed memory is accessed after deallocation, leading to potential code execution. The vulnerability requires an attacker to be authenticated and network-adjacent to the target system. An attacker can exploit this flaw to elevate privileges from their current user context to SYSTEM or administrative level. The vulnerability is rated high severity with a CVSS score of 7.1. Microsoft has issued security updates to address this issue.

Affected products

  • Microsoft Windows <UNKNOWN>

Timeline

  • 2026-09-08: disclosed
  • 2026-09-08: advisory

References

Related threats