CVE-2026-21240
Time-of-check time-of-use (toctou) race condition in Windows HTTP.sys allows an authorized attacker to elevate privilege
Time-of-check time-of-use (toctou) race condition in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
HIGH · CVSS 7.8
EPSS 0.00028
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0