// Microsoft AzureMEDIUM
Microsoft patched CVE-2026-49168, an Important elevation-of-privilege vulnerability in Storage Spaces Direct affecting Windows Server clusters. The flaw allows users with limited permissions to escalate rights to administrator level on affected nodes. No active exploitation has been reported, but the vulnerability affects hyperconverged infrastructure deployments and requires prompt patching across all cluster nodes.
// Get alerts for Microsoft Azure