You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve-2026-42969
About this tag
CVE-2026-42969 is a medium-severity information disclosure vulnerability in Windows Push Notifications, disclosed by Microsoft in the June 2026 Patch Tuesday update. The flaw affects supported Windows 10, Windows 11, and Windows Server releases. It is a local vulnerability, meaning an attacker must already have authorized access to the system to exploit it, rather than being remotely exploitable. While not a headline-grabbing bug, it highlights how sensitive system state information can be exposed through background Windows services. Administrators should apply the June 2026 security update to mitigate this risk.
Microsoft disclosed CVE-2026-42969 on June 9, 2026, as a medium-severity Windows Push Notifications information disclosure vulnerability affecting supported Windows 10, Windows 11, and Windows Server releases, with the flaw described as a local issue requiring an authorized attacker rather than...