- What: Windows Mark of the Web Security Feature Bypass Vulnerability
- Impact: Allows bypassing of security features related to web content
We use optional cookies to improve your experience on our websites, such as through social media connections, and to display personalized advertising based on your online activity. If you reject optional cookies, only cookies necessary to provide you the services will be used. You may change your selection by clicking “Manage Cookies” at the bottom of the page. Privacy Statement Third-Party Cookies AcceptRejectManage cookies MSRC Customer Guidance Security Update Guide Vulnerabilities CVE-2026-45595 Windows Mark of the Web Security Feature Bypass Vulnerability New On this page CVE-2026-45595 Subscribe RSS PowerShell API CSAF Security Vulnerability Released: Jun 9, 2026 Assigning CNA Microsoft CVE.org link CVE-2026-45595 Impact Security Feature Bypass Max Severity Important Weakness CWE-693: Protection Mechanism Failure CVSS Source Microsoft Vector String CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L/E:U/RL:O/RC:C Metrics CVSS:3.1 5.4 / 4.7 Base score metrics: 5.4 / Temporal score metrics: 4.7 Expand all Collapse all Metric Value Base score metrics(8) Attack Vector Network Attack Complexity Low Privileges Required None User Interaction Required Scope Unchanged Confidentiality None Integrity Low Availability Low Temporal score metrics(3) Exploit Code Maturity Unproven Remediation Level Official Fix Report Confidence Confirmed Please see Common Vulnerability Scoring System for more information on the definition of these metrics. Executive Summary Protection mechanism failure in Windows Mark of the Web (MOTW) allows an unauthorized attacker to bypass a security feature over a network. Exploitability The following table provides an exploitability assessment for this vulnerability at the time of original publication. Publicly disclosed No Exploited No Exploitability assessment Exploitation Less Likely FAQ According to the CVSS metrics, successful exploitation of this vulnerability could lead to some loss of integrity (I:L) and some loss of availability (A:L). What does that mean for this vulnerability? An attacker can craft a malicious file that would evade Mark of the Web (MOTW) defenses, resulting in a limited loss of integrity and availability of security features such as Protected View in Microsoft Office, which rely on MOTW tagging. How could an attacker exploit the vulnerability? To exploit this vulnerability, an attacker could host a file on an attacker-controlled server, then convince a targeted user to download and open the file. This could allow the attacker to interfere with the Mark of the Web functionality. Please see Additional information about Mark of the Web for further clarification Acknowledgements Bob van der Staak with Grip op Security https://gripopsecurity.nl/ Rutger Flohil with https://pampuna.nl/ Microsoft recognizes the efforts of those in the security community who help us protect customers through coordinated vulnerability disclosure. See Acknowledgements for more information. Security Updates To determine the support lifecycle for your software, see the Microsoft Support Lifecycle. Release date Descending Edit columns Download Filters Product Family Max Severity Impact Platform Clear Release date Product Platform Impact Max Severity Article Download Build Number Assigning CNA Title: Release date, Content: Jun 9, 2026 Windows 10 Version 22H2 for x64-based Systems - Security Feature Bypass Important Title: Knowledge Base Articles for Windows 10 Version 22H2 for x64-based Systems, Content:, 1 link 5094127 Title: Download Security Update for Windows 10 Version 22H2 for x64-based Systems, Content:, 1 link Security Update Title: Build numbers, Content: 10.0.19045.7417 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows 10 Version 21H2 for x64-based Systems - Security Feature Bypass Important Title: Knowledge Base Articles for Windows 10 Version 21H2 for x64-based Systems, Content:, 1 link 5094127 Title: Download Security Update for Windows 10 Version 21H2 for x64-based Systems, Content:, 1 link Security Update Title: Build numbers, Content: 10.0.19044.7417 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows 10 Version 21H2 for ARM64-based Systems - Security Feature Bypass Important Title: Knowledge Base Articles for Windows 10 Version 21H2 for ARM64-based Systems, Content:, 1 link 5094127 Title: Download Security Update for Windows 10 Version 21H2 for ARM64-based Systems, Content:, 1 link Security Update Title: Build numbers, Content: 10.0.19044.7417 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows 10 Version 21H2 for 32-bit Systems - Security Feature Bypass Important Title: Knowledge Base Articles for Windows 10 Version 21H2 for 32-bit Systems, Content:, 1 link 5094127 Title: Download Security Update for Windows 10 Version 21H2 for 32-bit Systems, Content:, 1 link Security Update Title: Build numbers, Content: 10.0.19044.7417 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows Server 2022 (Server Core installation) - Security Feature Bypass Important Title: Knowledge Base Articles for Windows Server 2022 (Server Core installation), Content:, 1 link 5094128 Title: Download Security Update for Windows Server 2022 (Server Core installation), Content:, 1 link Security Update Title: Build numbers, Content: 10.0.20348.5256 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows Server 2022 - Security Feature Bypass Important Title: Knowledge Base Articles for Windows Server 2022, Content:, 1 link 5094128 Title: Download Security Update for Windows Server 2022, Content:, 1 link Security Update Title: Build numbers, Content: 10.0.20348.5256 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows Server 2019 (Server Core installation) - Security Feature Bypass Important Title: Knowledge Base Articles for Windows Server 2019 (Server Core installation), Content:, 1 link 5094123 Title: Download Security Update for Windows Server 2019 (Server Core installation), Content:, 1 link Security Update Title: Build numbers, Content: 10.0.17763.8880 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows Server 2019 - Security Feature Bypass Important Title: Knowledge Base Articles for Windows Server 2019, Content:, 1 link 5094123 Title: Download Security Update for Windows Server 2019, Content:, 1 link Security Update Title: Build numbers, Content: 10.0.17763.8880 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows 10 Version 1809 for x64-based Systems - Security Feature Bypass Important Title: Knowledge Base Articles for Windows 10 Version 1809 for x64-based Systems, Content:, 1 link 5094123 Title: Download Security Update for Windows 10 Version 1809 for x64-based Systems, Content:, 1 link Security Update Title: Build numbers, Content: 10.0.17763.8880 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows 10 Version 1809 for 32-bit Systems - Security Feature Bypass Important Title: Knowledge Base Articles for Windows 10 Version 1809 for 32-bit Systems, Content:, 1 link 5094123 Title: Download Security Update for Windows 10 Version 1809 for 32-bit Systems, Content:, 1 link Security Update Title: Build numbers, Content: 10.0.17763.8880 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows Server 2012 R2 (Server Core installation) - Security Feature Bypass Important Title: Knowledge Base Articles for Windows Server 2012 R2 (Server Core installation), Content:, 1 link 5094041 Title: Download Security Update for Windows Server 2012 R2 (Server Core installation), Content:, 1 link Monthly Rollup Title: Build numbers, Content: 6.3.9600.23228 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows Server 2012 R2 - Security Feature Bypass Important Title: Knowledge Base Articles for Windows Server 2012 R2, Content:, 1 link 5094041 Title: Download Security Update for Windows Server 2012 R2, Content:, 1 link Monthly Rollup Title: Build numbers, Content: 6.3.9600.23228 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows Server 2016 (Server Core installation) - Security Feature Bypass Important Title: Knowledge Base Articles for Windows Server 2016 (Server Core installation), Content:, 1 link 5094122 Title: Download Security Update for Windows Server 2016 (Server Core installation), Content:, 1 link Security Update Title: Build numbers, Content: 10.0.14393.9234 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows Server 2016 - Security Feature Bypass Important Title: Knowledge Base Articles for Windows Server 2016, Content:, 1 link 5094122 Title: Download Security Update for Windows Server 2016, Content:, 1 link Security Update Title: Build numbers, Content: 10.0.14393.9234 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows 10 Version 1607 for x64-based Systems - Security Feature Bypass Important Title: Knowledge Base Articles for Windows 10 Version 1607 for x64-based Systems, Content:, 1 link 5094122 Title: Download Security Update for Windows 10 Version 1607 for x64-based Systems, Content:, 1 link Security Update Title: Build numbers, Content: 10.0.14393.9234 Title: Assigning CNA, Content: Microsoft Title: Release date, Content: Jun 9, 2026 Windows 10 Version 1607 for 32-bit Systems - Security Feature Bypass Important Title: Knowledge Base Articles for Windows 10 Version 1607 for 32-bit Systems, Content:, 1 link 5094122 Title: Download Security Update for Windows 10 Version 1607 for 32-bit Systems, Content:, 1 link Security Update Title: Build numbers, Content: 10.0.14393.9234 Title: Assi