Junglewise Threat Intelligence

CVE-2026-86938: A DLL hijacking vulnerability in the FileMaker Pro installer for Windows allowed a local user to execute arbitrary code with elevated admini

CVE-2026-86938 · Severity: high · CVSS 7.3 · Published 2026-09-23

Executive brief

A DLL hijacking vulnerability in the FileMaker Pro installer for Windows allowed a local user to execute arbitrary code with elevated administrator privileges by placing a malicious DLL file in the installer directory. This vulnerability is addressed in FileMaker Pro version 26.0.3.

References