CVE-2026-70338General(microsoft / powershell)

LOWCVSS 7.8 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper control of generation of code ('code injection') in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-94

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • powershell

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • General: 2 classified signals
  • 2 total mentions across 1 day

Affected systems

Vendors
Products
powershell

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-08-11: 2Technical Details · 2026-08-11: 208-11
Signal classification1 categories
General
2100.0%
Referenced assets2 URLs
Full discourse2 posts
  • Harvester@Harvesterify
    General

    WDAC and PowerShell CLM bypass, not something you get in evey Patch Tuesday https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-70338

    Post summary

    The post references a Windows security bypass vulnerability (CVE‑2026‑70338) and provides a link to Microsoft’s advisory, but it offers no PoC, exploit code, evidence of active exploitation, or patch details.

    00011413
    1.2K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-70338 Local Code Injection in Microsoft PowerShell Bypasses Security Feature https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-70338

    Post summary

    The text references CVE-2026-70338 as a local code injection bug in Microsoft PowerShell that bypasses a security feature, but provides no details on PoC, exploit code, active attacks, or remediation.

    00000120
    4.1K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appmicrosoftpowershell---

Explore more