CyberICT

CVE-2026-65680

Microsoft · Published August 11, 2026

CVSS v3.1

MEDIUM
Patch availableGet patch

Description

Microsoft OneDrive for MacOS Elevation of Privilege Vulnerability. Improper link resolution before file access ('link following') in Microsoft OneDrive allows an authorized attacker to elevate privileges locally.

Affected Products

  • OneDrive for MacOS

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C