Apr 2026: Microsoft PowerShell Security Feature Bypass Vulnerability
CVE-2026-26143 Published on April 14, 2026

Microsoft PowerShell Security Feature Bypass Vulnerability
Improper input validation in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally.

Vendor Advisory NVD

Weakness Type

Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.


Products Associated with CVE-2026-26143

Want to know whenever a new CVE is published for Microsoft Powershell? stack.watch will email you.

 

Affected Versions

Microsoft PowerShell 7.4: Microsoft PowerShell 7.5: