CVE-2026-18485: Ni Ni-Pal
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
There is a local privilege escalation vulnerability recently discovered in the NI-PAL kernel driver. This may allow a local, authenticated user to escalate privileges and execute arbitrary code. This vulnerability affects NI-PAL 26.3.1 and prior versions running on Microsoft Windows.
Affected products
- Ni Ni-Pal: up to and including 26.3.1
Published 2026-08-05. Last modified 2026-08-28.