A vulnerability labeled as very critical has been found in Microsoft Windows up to Server 2025. The affected element is an unknown function of the component Windows Defender Firewall Service. Such manipulation leads to improper authorization.

This vulnerability is listed as CVE-2026-61936. The attack must be carried out locally. There is no available exploit.

Applying a patch is advised to resolve this issue.