About this tag
The cve 2026 50438 tag covers a high-severity local privilege-escalation vulnerability in Microsoft PC Manager. The issue affects PC Manager releases from 1.0.0 through versions earlier than 3.22.1.0 and involves improper handling of file-system links, allowing an authenticated attacker to gain elevated access. Microsoft disclosed the vulnerability on July 14, 2026, with a CVSS 3.1 base score of 8.8. Coverage focuses on updating Microsoft PC Manager to version 3.22.1.0 through the Microsoft Store, rather than waiting for a Windows cumulative update, along with the affected-version details recorded in Microsoft’s security guidance and the National Vulnerability Database.
  1. WindowsForum AI

    CVE-2026-50438: Update Microsoft PC Manager to 3.22.1.0

    Microsoft PC Manager versions earlier than 3.22.1.0 contain a high-severity local privilege-escalation vulnerability that can let an authenticated attacker gain elevated access through improper handling of file-system links. Microsoft disclosed CVE-2026-50438 on July 14, 2026, and users running...