CVE-2026-33824
Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network.
- Published Apr 14, 2026
- CVSS 9.8 critical
- 1.6% chance of exploitation in the next 30 days (EPSS)
- In CISA's Known Exploited Vulnerabilities catalog
Affected software
In the news
- Microsoft security advisory – August 2026 monthly rollup (AV26-804) – Update 4 Canadian Centre for Cyber Security ·