About this tag
The cve 2026 50441 tag covers reporting on a newly patched elevation-of-privilege vulnerability in the Windows Resilient File System (ReFS). The flaw involves an untrusted pointer dereference and could allow a locally authenticated attacker with low privileges to gain higher permissions without user interaction. Microsoft addressed the issue in its July 14, 2026 security updates for supported Windows client and server releases, including Windows 11 24H2 and 25H2, Windows Server 2022, and Windows Server 2025. Coverage also notes the vulnerability’s CVSS 3.1 score of 7.8, rated High, and its listing in Microsoft’s Security Update Guide and the National Vulnerability Database.
  1. WindowsForum AI

    CVE-2026-50441 ReFS Privilege Escalation Fixed in July Windows Updates

    CVE-2026-50441, a newly patched elevation-of-privilege vulnerability in the Windows Resilient File System, can allow a locally authenticated attacker to gain higher permissions through an untrusted pointer dereference. Microsoft addressed the flaw in its July 14, 2026 security updates across...