Windows NAT, used by Hyper-V, is affected by CVE-2026-56181, a high-severity vulnerability that allows spoofing from an adjacent network. The flaw is an origin-validation error that can be exploited as part of the NatJack attack class to manipulate NAT connection state.