CVE-2026-50657: Microsoft Defender for Endpoint for Mac Information Disclosure Vulnerability

Overview

Severity
Medium (CVSS 4.7)
CVSS Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
Category
Information Disclosure
Exploit Status
Not Exploited
Exploitation Likelihood
Less Likely
Patch Tuesday
2026-Jul
Released
2026-07-14
EPSS Score
0.40% (percentile: 33.0%)

Description

Exposure of private personal information to an unauthorized actor in Microsoft Defender allows an authorized attacker to disclose information locally.

Detection & Weaponization (1 sources)

Maturity: Exploit

  • GitHub PoC: 1 repositories

Affected Products (1)

System Center

  • Microsoft Defender for Endpoint for Mac

Security Updates (1)

Acknowledgments

<a href="https://spaceraccoon.dev/">Eugene Lim</a>

Revision History

  • 2026-07-14: Information published.