CVE-2026-20853
Microsoft Windows 10 Version 1607, Windows 10 Version 1809, Windows 10 Version 21H2
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows WalletService allows an unauthorized attacker to elevate privileges locally.
- CVSS
- 7.4
- EPSS
- - - percentile
- CISA KEV
- Not listed
- Published
- 2026.01.14