Summary
Microsoft Defender Antimalware Platform versions before 4.18.26040.7 have a denial-of-service flaw in the scanning path. A local attacker can place crafted content that the real-time scanner processes, causing the engine to hang or crash and interrupt protection. CISA’s KEV listing indicates the issue is being actively exploited.
Why Planned Fix?
4/6Exploitation Details
Crash or hang the Defender antimalware engine, causing loss of scanning and monitoring.
Denial of ServiceAffected Software
| Product | Affected Versions |
|---|---|
| Microsoft Defender Antimalware Platform | 4.18.26030.3011 through < 4.18.26040.7 |
Microsoft Defender is Microsoft’s built-in antimalware and endpoint protection stack for Windows and Windows Server systems.
Affected ComponentCore antimalware scanning engine and real-time protection path used during file and content inspection.
Core antimalware scanning engine and real-time protection path used during file and content inspection.
Not available
Not available
Upgrade Microsoft Defender Antimalware Platform to version 4.18.26040.7 or later via Microsoft/Windows Update.
Upgrade Microsoft Defender Antimalware Platform to version 4.18.26040.7 or later via Microsoft/Windows Update.
Probability of exploitation in the next 30 days
Worse than 85% of all CVEs
No known threat actors
NVD Data
Description Summary
CVSS Base Score
CVSS Vector (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
Affected Software (CPE) (1)
- •cpe:2.3:a:microsoft:defender_antimalware_platform:*:*:*:*:*:*:*:*
Sources
| Source | Article |
|---|---|
| msrc.microsoft.com | CVE-2026-45498 Security Update Guide |
| nvd.nist.gov | NVD - CVE-2026-45498 |
| www.cyber.gc.ca | Microsoft security advisory (AV26-489) |
| www.cisa.gov | Known Exploited Vulnerabilities Catalog |
| learn.microsoft.com | Microsoft Defender Antivirus event IDs and error codes |
| learn.microsoft.com | Get-MpComputerStatus |
| www.malwarebytes.com | Microsoft Defender vulnerabilities are being exploited in the wild |
| www.tenable.com | CVE-2026-45498 |
Priority History
Initial analysis