CVE-2026-33694
Severity CVSS v4.0:
HIGH
Type:
CWE-59
Link Following
Publication date:
23/04/2026
Last modified:
24/04/2026
Description
This vulnerability allows an attacker to create a junction, enabling the deletion of arbitrary files with SYSTEM privileges. As a result, this condition potentially facilitates arbitrary code execution, whereby an attacker may exploit the vulnerability to execute malicious code with elevated SYSTEM privileges.



