VYPR
Medium severity5.5NVD Advisory· Published Aug 11, 2026· Updated Aug 17, 2026

CVE-2026-54123

CVE-2026-54123

Description

Exposure of sensitive information to an unauthorized actor in Microsoft Defender for Endpoint allows an authorized attacker to disclose information locally.

Affected products

2
  • Microsoft/Defender For Endpointllm-fuzzy2 versions
    (expand)+ 1 more
    • (no CPE)
    • cpe:2.3:a:microsoft:defender_for_endpoint:*:*:*:*:*:macos:*:*range: >=101.0.0,<101.26042.0020

Patches

Vulnerability mechanics

References

1

News mentions

2