All findings

CVE-2026-26168 high

Microsoft credits Atuin on Windows AFD Winsock elevation of privilege

Microsoft's April 2026 advisory directly names Tencent Xuanwu Lab's Atuin Automated Vulnerability Discovery System among the reporters of a Windows AFD Winsock EoP.

Bug class
Kernel elevation of privilege
Affected codebase
Microsoft Windows Ancillary Function Driver for Winsock
Credited system
Atuin Automated Vulnerability Discovery Engine
Disclosed
April 14, 2026
Attribution
Direct source attribution
Severity
high
Source status: Microsoft's Security Update Guide explicitly says Frederica of Tencent Xuanwu Lab used the Atuin Automated Vulnerability Discovery System; the advisory also lists other reporters.

Summary

CVE-2026-26168 affects the Windows Ancillary Function Driver for Winsock and can allow elevation of privilege. It is a historical omission from the April 2026 release rather than a new July disclosure.

Attribution

Microsoft directly names Atuin and makes clear that other researchers also reported the vulnerability. Bugflation records participation, not exclusivity.


References


Catalogued in the Bugflation public ledger. Disagree with the attribution or severity label? Email the desk.