PatchDay Alert

CVE

CVE-2026-7791

0field notes · 1digest CVSS 7.8


Daily digests

The Skylight Workspace Config Service in Amazon WorkSpaces for Windows has a flaw in its log rotation. A local non-admin user can plant arbitrary files in arbitrary locations, bypassing file system permissions, and escalate all the way to SYSTEM. You need local access, but no admin rights, so this is a real concern on any WorkSpaces desktop.

Get the digest

Free. Weekday mornings. Plain English CVE triage.

Check your inbox to confirm.