logo

Microsoft Defender vulnerabilities are being exploited in the wild

ID: d49b7970-4660-564a-baf7-d04cc7eef4c9

STIX ID: report--d49b7970-4660-564a-baf7-d04cc7eef4c9

Feed Name: Malwarebytes Blog

Threat Score
70/100

Date Published: 2026-05-21

Date Updated: 2026-05-22

...
...

Two Microsoft Defender vulnerabilities (CVE-2026-41091 — elevation of privilege, CVSS 7.8; and CVE-2026-45498 — denial-of-service, CVSS 4.0) were added to CISA’s Known Exploited Vulnerabilities catalog and are being actively exploited; administrators should apply the Defender platform update (first fixed in 4.18.26040.7) and ensure Windows Update and Defender intelligence/platform updates are enabled.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.