Back to search

Microsoft

Defender

See the latest tracked release, confirm when it was published, and subscribe for update emails.

Current version
Last checked: 2026-07-21

1.1.26060.3008

Release date
July 21, 2026
Security status
8 high-severity CVEs tracked in the last 90 days. Current version impact is unclear.

Source

Vendor Release Information

Public release notes are linked for the latest stored release.

Release history

See the latest published releases stored for this product.

Version Published Notes
1.1.26060.3008 2026-07-21 Release Notes
1.1.26050.11 2026-07-06 Release Notes
1.1.26040.8 2026-06-08 Release Notes
1.1.26030.3008 2026-05-19 Release Notes

Vulnerability tracking

versionPing monitors CVEs for this product. Matching CVEs are listed below. We only display CVEs with a CVSS score of 7.0 or higher that were published within the last 90 days.

Affected status is inferred from published affected version ranges where available. Always verify against the vendor advisory before making production decisions.

CVE Severity Published Status Summary
CVE-2026-50658 HIGH (7.0) 2026-07-14 Current versionunclear Time-of-check time-of-use (toctou) race condition in Microsoft Defender allows an authorized attacker to elevate privileges locally.
CVE-2026-55012 HIGH (7.8) 2026-07-14 Current versionunclear Integer overflow or wraparound in Microsoft Defender allows an unauthorized attacker to execute code locally.
CVE-2026-55011 HIGH (7.8) 2026-07-14 Current versionunclear Integer underflow (wrap or wraparound) in Microsoft Defender allows an unauthorized attacker to execute code locally.
CVE-2026-50656 HIGH (7.8) 2026-06-16 Current versionunclear Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "RoguePlanet ".
CVE-2026-45647 HIGH (7.0) 2026-06-09 Current versionunclear Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
CVE-2026-45584 HIGH (8.1) 2026-05-20 Current versionunclear Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code over a network.
CVE-2026-45498 HIGH (7.5) 2026-05-20 Current versionunclear Microsoft Defender Denial of Service Vulnerability
CVE-2026-41091 HIGH (7.8) 2026-05-20 Current versionunclear Improper link resolution before file access ('link following') in Microsoft Defender allows an authorized attacker to elevate privileges locally.