What is CVE-2026-50523?
CVE-2026-50523 is a 'command injection' vulnerability in Microsoft PowerShell due to improper neutralization of special elements. It allows an authorized attacker to execute code locally. Applying security updates for affected PowerShell versions is recommended.
Azərbaycanca: CVE-2026-50523, Microsoft PowerShell-də aşkar edilmiş 'command injection' zəifliyidir. Bu qüsur səlahiyyətli lokal təcavüzkara xüsusi simvolların neytrallaşdırılmaması səbəbindən kod icra etməyə imkan verir. Təsirə məruz qalan sistemlərdə PowerShell yeniləmələrinin tətbiqi tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-77; shared vendor: Microsoft
FAQ2
Which software product is affected by CVE-2026-50523?
CVE-2026-50523 affects Microsoft PowerShell.
Does exploiting CVE-2026-50523 require the attacker to be authenticated?
Yes, this vulnerability can be exploited by an authorized attacker locally.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.