CVE-2026-65680
Improper link resolution before file access ('link following') in Microsoft OneDrive allows an authorized attacker to elevate privileges loc
CVSS
6.7
Medium
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Aug 11, 2026 · Last modified: Aug 11, 2026 · CWE-59
Not enough EPSS history yet.
Improper link resolution before file access ('link following') in Microsoft OneDrive allows an authorized attacker to elevate privileges locally.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-729715.5 MED—
———Improper link resolution before file access ('link following') in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to perform tampering locally.8hCVE-2026-703485.5 MED—
———Improper link resolution before file access ('link following') in Windows Management Services allows an authorized attacker to deny service locally.9hCVE-2026-628327.8 HIG—
———Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorized attacker to elevate privileges locally.9hCVE-2026-628127.8 HIG—
———Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.6hCVE-2026-628077.8 HIG—
———Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.6hCVE-2026-628037.8 HIG—
———Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.6h