CVE-2026-50656

Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "RoguePlanet ".
Configurations

Configuration 1 (hide)

cpe:2.3:a:microsoft:malware_protection_engine:-:*:*:*:*:*:*:*

History

09 Jul 2026, 00:17

Type Values Removed Values Added
Summary (en) Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "RoguePlanet ". We are working to provide a high quality security update that addresses this vulnerability. We will provide information in this CVE when the update is available. (en) Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "RoguePlanet ".

17 Jun 2026, 19:10

Type Values Removed Values Added
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50656 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50656 - Vendor Advisory
References () https://github.com/MSNightmare/RoguePlanet - () https://github.com/MSNightmare/RoguePlanet - Product
CPE cpe:2.3:a:microsoft:malware_protection_engine:-:*:*:*:*:*:*:*
First Time Microsoft malware Protection Engine
Microsoft

16 Jun 2026, 20:16

Type Values Removed Values Added
References
  • () https://github.com/MSNightmare/RoguePlanet -

16 Jun 2026, 19:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-16 19:16

Updated : 2026-07-09 00:17


NVD link : CVE-2026-50656

Mitre link : CVE-2026-50656

CVE.ORG link : CVE-2026-50656


JSON object : View

Products Affected

microsoft

  • malware_protection_engine
CWE
CWE-59

Improper Link Resolution Before File Access ('Link Following')