Vulnerability · NVD
CVE-2026-69781
CVE-2026-69781 : medium severity (CVSS 6.5). No tracked catalog app is linked to this CVE.
- Severity (CVSS)
- 6.5
- Exploitation
- 0.5 %
- Tracked apps
- 0
- Still exposed
- 0
NVD scale
EPSS, predicted over 30 days
Missing release of memory after effective lifetime in Windows DHCP Client allows an unauthorized attacker to deny service over an adjacent network.
Attack vector : Adjacent network
No privileges required
No user interaction
Show raw CVSS vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS
0.52%
exploit very unlikely
percentile 42.3%
OS versions that fix this CVE
This CVE is resolved by the following OS security releases. Update the OS to at least the listed version.
- Windows Server 2025 Fixed in 10.0.26100.33438
- Windows 11 26H1 · 2026-H1 Fixed in 10.0.28000.2954
- Windows 11 25H2 · 2025-H2 Fixed in 10.0.26200.9445
- Windows 11 24H2 · 2024-H2 Fixed in 10.0.26100.9445