CVE-2026-50302
Microsoft · Published July 14, 2026
4.2
CVSS v3.1
MEDIUMPatch availableGet patch
Description
Windows Cryptographic Services Security Feature Bypass Vulnerability. Improper certificate validation in Windows Cryptographic Services allows an unauthorized attacker to bypass a security feature over a network.
Affected Products
- Windows Server 2022
- Windows 10 Version 21H2 for 32-bit Systems
- Windows 10 Version 21H2 for ARM64-based Systems
- Windows 10 Version 21H2 for x64-based Systems
CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N/E:U/RL:O/RC:C