CVE-2026-21510
KEVHIGH 8.8EPSS 25.8%
Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network.
- CVSS v3.1
- 8.8 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H - EPSS
- 25.84% chance of exploitation in the next 30 days, 98th percentile
- CISA KEV
- added 2026-02-10
- Published
- 2026-02-10
- Updated
- 2026-08-19
Proof-of-concept exploits (3)
- andreassudo/CVE-2026-21510-CVSS-8.8-Important-Windows-Shell-security-feature-bypass7★ · 2026-02-11
- ChaitanyaHaritash/CVE-2026-21514_CVE-2026-215105★ · 2026-05-04
- EpSiLoNPoInTOrI/EpSiLoNPoInTlnk2★ · 2026-05-09