CVE-2026-35433
Microsoft · Published May 12, 2026
7.3
CVSS v3.1
HIGHPatch availableGet patch
Description
.NET Elevation of Privilege Vulnerability. Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally.
Affected Products
- .NET 10.0 installed on Windows
- .NET 8.0 installed on Windows
- .NET 9.0 installed on Windows
- Microsoft .NET Framework 4.8 on Windows 10 Version 1607 for x64-based Systems
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L/E:U/RL:O/RC:C