CVE-2026-72971EPSS p27.9%

CVE-2026-72971CVE-2026-72971

microsoft / windows_11_26h1

Description

Improper link resolution before file access ('link following') in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to perform tampering locally.

Scoring

CVSS 5.5 ()
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
EPSS0.36% probability of exploitation · percentile 27.9% · 2026-10-05T12:00:23Z
Last modified2026-08-14
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.