CVE-2019-1167: Microsoft PowerShell Core

Medium severity, CVSS 4.1. EPSS: 1.1% chance of exploitation in the next 30 days.

A security feature bypass vulnerability exists in Windows Defender Application Control (WDAC) which could allow an attacker to bypass WDAC enforcement, aka 'Windows Defender Application Control Security Feature Bypass Vulnerability'.

Affected products

  • Microsoft PowerShell Core: version 6.1 only; version 6.2 only

Published 2019-07-19. Last modified 2026-06-17.