Description
Use after free in Windows Hello allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Elevation of Privilege
Action: Immediate Patch
AI Analysis

Impact

This vulnerability is a use‑after‑free flaw in the Windows Hello component, allowing an authorized local attacker to execute code with higher privileges. By exploiting a freed object that remains in memory, the attacker can manipulate the execution flow and run arbitrary instructions, potentially taking full control of the affected system. The weakness is classified as CWE‑416, representing improper deallocation of resources.

Affected Systems

The flaw affects Windows 11 versions 23H2, 24H2, 25H2, and 26H1. All architectures listed (arm64 and x64) for these releases are impacted, as indicated by the relevant CPE entries. Users running any of these builds require remediation.

Risk and Exploitability

The vulnerability carries a CVSS score of 8.8, indicating a high severity and significant risk to confidentiality, integrity, and availability. No EPSS score is available, so the exact likelihood of exploitation remains unknown, and the issue is not yet listed in the CISA KEV catalog. The attack vector is inferred to be local, requiring an authenticated or otherwise authorized user to trigger the use‑after‑free through Windows Hello authentication or management functions.

Generated by OpenCVE AI on September 10, 2026 at 00:15 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the Microsoft security update that addresses CVE‑2026‑69740 as released through Windows Update or the Microsoft Security Response Center.
  • Ensure the device is running the latest Windows 11 build (23H2, 24H2, 25H2, or 26H1) and that all cumulative updates are installed.
  • Disable or restrict Windows Hello usage on accounts that do not require biometric authentication until the update is applied, reducing the attack surface for local users.

Generated by OpenCVE AI on September 10, 2026 at 00:15 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 22 Sep 2026 20:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_11_25h2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_25h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_11_26h1:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_26h1:*:*:*:*:*:*:x64:*

Thu, 10 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft windows 11 23h2
Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1
Vendors & Products Microsoft windows 11 23h2
Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1

Tue, 08 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 08 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Description Use after free in Windows Hello allows an authorized attacker to elevate privileges locally.
Title Windows Hello Elevation of Privilege Vulnerability
First Time appeared Microsoft
Microsoft windows 11 23h2
Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1
Weaknesses CWE-416
CPEs cpe:2.3:o:microsoft:windows_11_23H2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_23H2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_11_24H2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_25H2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_26H1:*:*:*:*:*:*:x64:*
Vendors & Products Microsoft
Microsoft windows 11 23h2
Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C'}


Subscriptions

Microsoft Windows 11 23h2 Windows 11 23h2 Windows 11 24h2 Windows 11 24h2 Windows 11 25h2 Windows 11 25h2 Windows 11 26h1 Windows 11 26h1
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-09-25T21:32:12.334Z

Reserved: 2026-08-03T22:40:09.685Z

Link: CVE-2026-69740

cve-icon Vulnrichment

Updated: 2026-09-08T18:59:36.579Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-08T18:19:46.243

Modified: 2026-09-22T20:03:29.917

Link: CVE-2026-69740

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-10T21:08:40Z

Weaknesses