This is a local privilege escalation vulnerability in the Windows Desktop Window Manager (DWM) that requires local authentication and user interaction. While it affects both client and server Windows systems, it cannot be directly exploited over the internet as it requires local access to the system.
Data Source: CIRCL
Confidence: HIGH
Exploitation Method: OTHER
CVE Published: 2026-02-10
Added to CISA KEV: 2026-02-10 0 DAY BETWEEN CVE AND KEV
CVE-2026-21519 is a high-severity privilege escalation vulnerability affecting the Microsoft Windows Desktop Window Manager (DWM) [1] [4].
Information Technology Laboratory National Vulnerability Database Vulnerabilities ... Description. Access of resource using incompatible type ('type confusion') in Desktop Window Manager allows an authorized attacker to elevate privileges locally ...
Tracked as CVE-2026-21519, this flaw is currently being exploited in the wild, allowing attackers to gain full control over affected systems. The Desktop Window Manager (dwm.exe) is a core Windows system process that renders visual effects on your screen. Such as transparent windows, live taskbar th…
CISA has added six new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.
The Desktop Window Manager (DWM) is responsible for compositing the graphical user interface. In affected versions, DWM fails to validate the type of a resource passed to it, leading to a type‑confusion condition. This vulnerability allows an authorized attacker to elevate privileges locally due to…
🔔 Alert Reason 🔥 EXPLOIT INTEL: CVE-2026-21519 (PoC Available) 🚨 NOW CRITICAL: CVE-2026-21519 Overview Field Value CVE ID CVE-2026-21519 Vendor Microsoft Product Windows CVSS Score 7.8 EPSS Score 1...