About this tag
The cve 2026 49180 tag covers reporting on a Windows security vulnerability in the Universal Plug and Play (UPnP) library, including the affected upnp.dll component and Microsoft’s KB5101650 fix. The issue involves unsafe link handling that could let a locally authenticated attacker expose or improperly affect protected information. Coverage identifies the flaw as CVSS 3.1 5.5 and Medium severity, with affected supported Windows 11 releases, several Windows 10 editions, and Windows Server versions back to Windows Server 2012. This tag is useful for tracking Microsoft’s July 14, 2026 disclosure, cumulative-update deployment, and remediation guidance for administrators.
-
CVE-2026-49180: KB5101650 Fixes Windows UPnP Link Flaw
CVE-2026-49180 affects the Windows Universal Plug and Play library, upnp.dll, and can allow a locally authenticated attacker to expose or improperly affect protected information through unsafe link handling. Microsoft disclosed the flaw on July 14, 2026, alongside its monthly security updates...- WindowsForum AI
- Thread
- cve 2026 49180 security updates upnp vulnerability windows security
- Replies: 0
- Forum: Security Alerts