New Microsoft Defender 0‑Days Actively Exploited in the Wild
ID: 7e144925-f4cf-58d6-b516-ce4c329aace4
STIX ID: report--7e144925-f4cf-58d6-b516-ce4c329aace4
Feed Name: cybersecurityNews.com
Two newly disclosed, publicly exploited Microsoft Defender vulnerabilities (CVE-2026-41091 — local elevation of privilege via improper link/junction handling, and CVE-2026-45498 — Denial of Service in the Antimalware Platform) affect core Defender components across supported Windows versions. Microsoft and CISA confirm in-the-wild exploitation and have added the flaws to the KEV catalog; remediation is via automatic Defender engine/platform updates (fixed engine 1.1.26040.8 and platform 4.18.26040.7), and organizations are urged to verify update deployment and compliance under BOD 22-01.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
