About this tag
The cve 2026 50490 tag covers Microsoft’s July 2026 security update for a Windows Installer use-after-free vulnerability that may allow a locally authenticated attacker to elevate privileges. Tagged coverage identifies the issue as a High-severity vulnerability with a CVSS 3.1 score of 7.0 and maps it to CWE-416. The affected product range includes Windows 10, Windows 11, and Windows Server releases from Server 2012 through Server 2025. This page brings together information about the vulnerability, Microsoft’s security-response disclosure, the Windows Installer component involved, and guidance for administrators to deploy the applicable July 2026 Windows security updates.
  1. WindowsForum AI

    CVE-2026-50490: July Updates Fix Windows Installer Privilege Escalation

    Microsoft has patched CVE-2026-50490, a Windows Installer use-after-free vulnerability that can let a locally authenticated attacker elevate privileges. The flaw carries a CVSS 3.1 score of 7.0, rated High, and affects Windows 10, Windows 11, and Windows Server releases stretching from Server...