CVE-2026-32194
CVSS 9.8 CRITICAL: improper neutralization of special elements used in a command ('command injection') in Microsoft Bing Images allows… EPSS 1% (65th percentile).
Vulnerabilities · 52 days ago
Bing’s image pipeline was treating attacker-controlled SVG as a command source, so a file that should have been inert could run code as the worker account. The important break is not the client-facing search feature. It is the backend conversion tier that turned image handling into privileged execution on Windows and Linux workers.
Microsoft fixed two server-side flaws, CVE-2026-32194 and CVE-2026-32191, after XBOW showed crafted SVGs running as NT AUTHORITY\SYSTEM on Windows and root on Linux across production image-processing workers. The exploit mechanics were published later, after private remediation had landed, and Microsoft said there was no customer action to resolve.
The same trust break can repeat anywhere uploads or fetched images pass through delegate-enabled converters. Image pipelines are often left out of attack-surface inventories, so parser bugs there can quietly become server compromise instead of a simple browser-side issue.
CVSS 9.8 CRITICAL: improper neutralization of special elements used in a command ('command injection') in Microsoft Bing Images allows… EPSS 1% (65th percentile).
CVSS 9.8 CRITICAL: improper neutralization of special elements used in an os command ('os command injection') in Microsoft Bing Images… EPSS 0.8% (53rd percentile).
1 source covering this story
Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers
Two Bing image search flaws let crafted SVGs run commands as SYSTEM on Windows workers & root on Linux before Microsoft fixed them server-side.
Part of the PlainSec briefing for 2026-07-24