Junglewise Threat Intelligence

CVE-2026-69911: Microsoft Windows Search use-after-free privilege escalation

CVE-2026-69911 · Severity: high · CVSS 7 · Published 2026-09-08

Executive brief

Windows Search is a system component that indexes and searches files on Windows computers. A use-after-free vulnerability in this component allows an authorized user on the system to gain elevated (administrator) privileges, potentially compromising system security and enabling unauthorized access to sensitive data or system functions.

Technical details

The vulnerability is a use-after-free memory corruption issue in the Microsoft Windows Search component. It requires the attacker to be an authorized local user with at least standard privileges. The flaw allows an authenticated local attacker to craft a malicious action that triggers the use-after-free condition, leading to arbitrary code execution with elevated system privileges. The vulnerability is reachable via local attack vector and does not require user interaction beyond normal system operation. A patch has been released by Microsoft as indicated by the Security Update Guide reference.

Affected products

  • Microsoft Windows Search

Timeline

  • 2026-09-08: disclosed
  • patched: Security updates available via Microsoft Security Update Guide

References

Related threats