cbcvebase.
CVE-2026-32219
published 2026-04-14

CVE-2026-32219: Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

Affected

8 ranges
VendorProductVersion rangeFixed in
microsoftwindows_11_24h2< 10.0.26100.824610.0.26100.8246
microsoftwindows_11_25h2< 10.0.26200.824610.0.26200.8246
microsoftwindows_11_26h1< 10.0.28000.183610.0.28000.1836
microsoftwindows_11_version_24h2>= 10.0.26100.0 < 10.0.26100.824610.0.26100.8246
microsoftwindows_11_version_25h2>= 10.0.26200.0 < 10.0.26200.824610.0.26200.8246
microsoftwindows_11_version_26h1>= 10.0.28000.0 < 10.0.28000.183610.0.28000.1836
microsoftwindows_server_2025< 10.0.26100.3269010.0.26100.32690
microsoftwindows_server_2025>= 10.0.26100.0 < 10.0.26100.3269010.0.26100.32690