CVE-2026-50656
Microsoft Defender Elevation of Privilege Vulnerability
Description
Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "RoguePlanet ". We are working to provide a high quality security update that addresses this vulnerability. We will provide information in this CVE when the update is available.
CVE-2026-50656 is a Microsoft Defender (Microsoft Malware Protection Engine) security flaw that could let an attacker gain higher permissions, and a typical small business should act by updating Defender as soon as Microsoft releases the fix.
CVSS Vector Breakdown
AV:LAttack VectorAC:LAttack ComplexityPR:LPrivileges RequiredUI:NUser InteractionS:UScopeC:HConfidentialityI:HIntegrityA:HAvailabilityWeaknesses
Affected Products
Attack Graph
Click technique nodes to view MITRE ATT&CK details. Scroll to zoom, drag to pan.
Exploitability
MITRE ATT&CK
2 techniquesReferences
Timeline
- 22nd June – Threat Intelligence Reporten-us·Check Point Research·
- В Microsoft работают над патчем для 0-day-уязвимости RoguePlanetru-ru·Хакер (xakep.ru)· Source-only·
- Microsoft Confirms RoguePlanet Defender Zero-Day, Says Patch is in Developmenten·The Hacker News· Summary only·
- Microsoft Working on Patch for ‘RoguePlanet’ Zero-Dayen-us·SecurityWeek· Summary only·
- Microsoft working on Defender patch for RoguePlanet zero-dayen-us·BleepingComputer· Summary only·
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2026-50656 and every CVE in our database. Create a free account — no credit card required.
Create Free Account