CVE-2026-20929 | Microsoft Windows up to Server 2022 23H2 HTTP.sys access control
A vulnerability, which was classified as critical, has been found in Microsoft Windows. This issue affects some unknown processing in the library HTTP.sys. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2026-20929. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to install a patch to address this issue.