CVE-2026-6851: Bitdefender Internet Security
High severity, CVSS 7.0. EPSS: 0.1% chance of exploitation in the next 30 days.
An Improper link resolution before file access ('link following') vulnerability in the File Shredder module as used in Bitdefender Total Security and Internet Security on Windows allows a less-privileged local user to elevate rights by leveraging a race conditions via Symbolic Links. This issue affects Total Security: before 27.0.58.315; Internet Security: before 27.0.58.315.
Affected products
- Bitdefender Internet Security: before 27.0.58.315 (fixed in 27.0.58.315)
- Bitdefender Total Security: before 27.0.58.315 (fixed in 27.0.58.315)
Published 2026-07-14. Last modified 2026-08-12.