CVE-2026-33838
High
Published: 12 May 2026
Published
12 May 2026
Modified
13 May 2026
KEV Added
—
Patch
—
CVSS Score
7.8
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.0004
13.7th percentile
Risk Priority
16
60% EPSS · 20% KEV · 20% CVSS
Summary
CVE-2026-33838 is a high-severity Double Free (CWE-415) vulnerability. Its CVSS base score is 7.8 (High).
Operationally, ranked at the 13.7th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.
NVD Description
Double free in Windows Message Queuing allows an authorized attacker to elevate privileges locally.
Deeper analysisAI
Automated synthesis unavailable for this CVE.
Details
- CWE(s)