CVE-2026-26143Disclosure(microsoft / powershell)

LOWCVSS 7.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch microsoft powershell systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper input validation in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-20

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • powershell

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-04-15); latest day: 1
  • 4 total mentions across 3 days

Affected systems

Vendors
Products
powershell

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-04-14: 1Mentions · 2026-04-15: 2Mentions · 2026-04-16: 1Patch / Workaround · 2026-04-14: 1Technical Details · 2026-04-14: 1Technical Details · 2026-04-15: 1Technical Details · 2026-04-16: 104-1404-1504-16
Signal classification3 categories
Disclosure
250.0%
Patch
125.0%
General
125.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-04-141
Patch1
2026-04-152
Disclosure1General1
2026-04-161
Disclosure1
Full discourse4 posts
  • _Emin_@p0w3rsh3ll
    Patch

    CVE-2026-26143 Microsoft PowerShell Security Feature Bypass Vulnerability > https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26143 CVE-2026-26170 PowerShell Elevation of Privilege Vulnerability > https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26170 #PowerShell

    Post summary

    The text lists two PowerShell CVEs and provides links to Microsoft’s security update guides, indicating that vendor patches are available.

    0001093
    1.2K followersView on X
  • 0day Signal@0dayPublishing
    Disclosure

    ⚠️ CVE-2026-26143: Micr... PowerShell's input validation bypass hits 7.8 CVSS with local RCE potential - perfect for persistence once you're already in #PowerShell #PrivEsc. https://zerodaysignal.com/vulnerability/CVE-2026-26143 #netsec #vulnerability #CVE #sysadmin #zeroday

    Post summary

    The post discloses a PowerShell input validation bypass with a CVSS score of 7.8 and local RCE potential, but it does not mention any PoC, exploit code, patch, or active exploitation.

    0000044
    218 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-26143 Improper input validation in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally. https://www.cve.org/CVERecord?id=CVE-2026-26143 ----- Traducción: CVE-2026-26143 Validación de entrada inapropiada en Microsoft Power… http://infoflow.cloud`

    Post summary

    The post announces CVE-2026-26143, describing improper input validation in PowerShell that allows local attackers to bypass a security feature, but provides no PoC, exploit, exploitation evidence, or patch information.

    0000032
    71 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-26143 Improper input validation in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally. https://www.cve.org/CVERecord?id=CVE-2026-26143

    Post summary

    The post provides a brief CVE description without any detailed technical information, proof‑of‑concept, exploitation evidence, or patch notes.

    00000190
    57.2K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appmicrosoftpowershell---

Explore more