Bing Images RCE: CVE-2026-32194 SVG Flaw Explained
🔴 Critical | Source: The Hacker News A maliciously crafted SVG file uploaded to Bing Image Search triggered remote code execution on Microsoft’s production image-processing infrastructure, granting attackers SYSTEM-level privileges on Windows workers and root on Linux machines in the same fleet. The vulnerability affected multiple hosts across different network ranges, confirming it was a systemic flaw in Bing’s image-processing tier rather than an isolated misconfiguration. Microsoft has assigned two critical CVEs — CVE-2026-32194 — underscoring the severity of the exposure. ...