Link following in Microsoft Windows - CVE-2026-69771
Published: September 8, 2026
Vulnerability details
The vulnerability allows a local user to bypass access restrictions and access protected virtual hard disks in an attacker-controlled container.
The vulnerability exists due to improper link resolution before file access in Windows Container Manager Service when mapping virtual hard disks into containers. A local user can swap virtual hard disks through repeated exploitation attempts to bypass access restrictions and access protected virtual hard disks in an attacker-controlled container.