CVE-2026-45586
HIGH EXPLOITEDWindows Collaborative Translation Framework (CTFMON) Elevation of Privilege Vulnerability
Title source: cnaExploitation Summary
CVE-2026-45586 has been observed exploited in the wild (reported by VulnCheck KEV).
Description
Improper link resolution before file access ('link following') in Windows Collaborative Translation Framework allows an authorized attacker to elevate privileges locally.
References (1)
Core 1
Core References
Vendor Advisory vendor-advisory
patch
Windows Collaborative Translation Framework (CTFMON) Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45586
Scores
CVSS v3
7.8
EPSS
0.0363
EPSS Percentile
88.4%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
VulnCheck KEV
2026-07-10
CWE
CWE-59
Status
published
Products (33)
Microsoft/Windows 10 Version 1607
10.0.14393.0 - 10.0.14393.9234
Microsoft/Windows 10 Version 1809
10.0.17763.0 - 10.0.17763.8880
Microsoft/Windows 10 Version 21H2
10.0.19044.0 - 10.0.19044.7417
Microsoft/Windows 10 Version 22H2
10.0.19045.0 - 10.0.19045.7417
Microsoft/Windows 11 version 23H2
10.0.22631.0 - 10.0.22631.7219
Microsoft/Windows 11 Version 24H2
10.0.26100.0 - 10.0.26100.8655
Microsoft/Windows 11 Version 25H2
10.0.26200.0 - 10.0.26200.8655
Microsoft/Windows 11 version 26H1
10.0.28000.0 - 10.0.28000.2269
Microsoft/Windows Server 2012
6.2.9200.0 - 6.2.9200.26132
Microsoft/Windows Server 2012 (Server Core installation)
6.2.9200.0 - 6.2.9200.26132
... and 23 more
Published
Jun 09, 2026
Tracked Since
Jun 09, 2026