Vulnerability Details CVE-2026-70338
Improper control of generation of code ('code injection') in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 36.4%
CVSS Severity
CVSS v3 Score 7.8