CVE-2026-50523HighCVSS 7.8

Microsoft PowerShell Remote Code Execution Vulnerability

Published
August 11, 2026
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

Improper neutralization of special elements used in a command ('command injection') in Microsoft PowerShell allows an authorized attacker to execute code locally.

🎯 Affected products3

  • PowerShell 7.4
  • PowerShell 7.5
  • PowerShell 7.6

✅ Remediation

Security Update — fixed build 7.5.10.0 Security Update — fixed build 7.6.5 Security Update — fixed build 7.4.19.0

🔗 References (1)