Gallery

Contacts

405 W. Greenlawn Ave Lansing, Michigan 48910

contact@techjacksolutions.com

+1-616-320-4064

CVE-2026-35603 is a high-severity privilege escalation vulnerability affecting AI-assisted coding tools on Windows, including Claude Code (Anthropic), Cursor, Codex CLI (OpenAI), and Gemini CLI (Google). A low-privileged local attacker can exploit insecure ProgramData directory permissions to execute arbitrary commands under an administrator’s security context. Organizations with developers running these tools on Windows workstations face elevated risk of local privilege escalation leading to credential theft, lateral movement, or workstation compromise.

Author

Tech Jacks Solutions