CyberSecurityBoardThreat Intel · CVEs · Products
Critical CVEs

CVE-2026-68820: Actively Exploited Windows Ancillary Function Driver Zero-Day

August 11, 2026

CVE-2026-68820 is an actively exploited zero-day in the Windows Ancillary Function Driver for WinSock that grants SYSTEM privileges. It was patched by Microsoft in August 2026 and added to CISA's Known Exploited Vulnerabilities catalog, requiring federal agencies to apply fixes by August 25, 2026.