Skip to content
VulniPulse
Highest advisory severityHigh 2 vendors · 2 advisories

CVE-2026-66799

CVE-2026-66799: 2 tracked advisory records across MS Server, Red Hat. Compare vendor sources and published fix guidance.

Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.

Vendor advisory comparison

MS Server

1 advisory
  • Advisory severityHigh7.8

    High [CVE-2026-66799] Windows Key Guard Elevation of Privilege Vulnerability

    CVE-2026-66799Source published Source updated

    Windows Key Guard Elevation of Privilege Vulnerability Affected products named by the advisory: Windows Server 2019; Windows Server 2022; Windows Server 2025; Windows Server 2016; and 2 more. Affected products named by the advisory: Windows Server 2012 R2.

    Affected products in this advisory
    • Windows Server 2019
    • Windows Server 2022
    • Windows Server 2025
    • Windows Server 2016

    1 more entries in the full advisory.

    Source-reported affected versions
    • Windows 10 Version 1607 10.0.14393.0 before 10.0.14393.9418
    • Windows 10 Version 1809 10.0.17763.0 before 10.0.17763.9115
    • Windows 10 Version 21H2 10.0.19044.0 before 10.0.19044.7663
    • Windows 10 Version 22H2 10.0.19045.0 before 10.0.19045.7663

    8 more entries in the full advisory.

    Source-reported fixed versions
    • KB5120238 (build 10.0.17763.9121)
    • KB5120242 (build 10.0.20348.5499)
    • KB5120229 (build 10.0.20348.5440)
    • KB5123303 (build 10.0.20348.5499)

    4 more entries in the full advisory.

    Mitigation guidance
    • Install the applicable security update for your platform: KB5120238, KB5120242, KB5120229, KB5123303, KB5120249, KB5120233 (see the Microsoft Update Catalog).

Red Hat

1 advisory
  • Advisory severityHigh7.1

    High [CVE-2026-66799] Restore.spec.namespaceMapping pass-through enables cross-namespace Secret/ConfigMap placement

    CVE-2026-66799Source published Source updated

    Heap-based buffer overflow in Windows Key Guard allows an authorized attacker to elevate privileges locally. A flaw was found in the cluster-backup-operator. A privileged user with administrative access to a specific namespace could exploit a vulnerability in the backup restoration process. This flaw allows them to redirect sensitive information, such as cloud provider credentials and access tokens, from backup operations into other namespaces, including those they control. This could lead to unauthorized access to critical system resources and the disclosure of confidential data. This is an Important vulnerability in Red Hat Advanced Cluster Management for Kubernetes. This allows for a cross-namespace write of credential material, potentially leading to unauthorized access to cloud…

    Affected products in this advisory
    • Red Hat Advanced Cluster Management for Kubernetes 2.13
    • Red Hat Advanced Cluster Management for Kubernetes 2.14
    • Red Hat Advanced Cluster Management for Kubernetes 2.15
    • Red Hat Advanced Cluster Management for Kubernetes 2.16

    1 more entries in the full advisory.

    Source-reported affected versions
    Affected-version details not available in this record.
    Source-reported fixed versions
    • rhacm2/cluster-backup-rhel9-operator:1787259060
    • rhacm2/cluster-backup-rhel9-operator:1787183178
    • rhacm2/cluster-backup-rhel9-operator:1787238500
    • rhacm2/cluster-backup-rhel9-operator:1786908309

    6 more entries in the full advisory.

    Mitigation guidance
    • To mitigate this issue, restrict administrative access to the `open-cluster-management-backup` namespace. Only trusted administrators should have permissions to create or modify `Restore` Custom Resources within this namespace, as this action is required to exploit the vulnerability.

Android app · Google Play

Turn CVE research into alerts on your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Matching phone alertsOptional email delivery