CVE Tools

Critical RCE flaw in Windows IKE Extension now actively exploited

BleepingComputerBy Sergiu Gatlan

Reported exploitedWindows

Our summary

CISA has confirmed that threat actors are actively exploiting a critical remote code execution vulnerability in the Windows IKE Service Extensions component, tracked as CVE-2026-33824. This double-free flaw affects all supported versions of Windows 10, Windows 11, and Windows Server, allowing unauthenticated attackers to achieve code execution by sending maliciously crafted packets over UDP ports 500 or 4500. Microsoft addressed the issue during the April 2026 Patch Tuesday cycle, and security teams should apply the relevant updates immediately or restrict inbound traffic on those UDP ports if immediate patching is not possible.

Read at BleepingComputer

BleepingComputer publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store