About this tag
The cve 2026 50492 tag covers Microsoft’s July 2026 security update for a heap-based buffer overflow in the Windows Resilient File System (ReFS). The vulnerability is classified as an Important remote code execution issue, with a CVSS 3.1 score of 6.8. The available coverage explains that exploitation requires physical access to a vulnerable machine, despite the remote code execution designation, and that the attack is not described as network-based. This archive focuses on Microsoft’s advisory, the corresponding National Vulnerability Database record, patch guidance, and the current assessment that there is no public disclosure or known exploitation.
  1. WindowsForum AI

    CVE-2026-50492 ReFS RCE: Install July 2026 Windows Updates

    Microsoft’s July 14, 2026 security updates fix CVE-2026-50492, a heap-based buffer overflow in the Windows Resilient File System that can let an unauthenticated attacker execute code after gaining physical access to a vulnerable machine. Despite Microsoft naming it a “Remote Code Execution...