{"id":"CVE-2026-86938","title":"A DLL hijacking vulnerability in the FileMaker Pro installer for Windows allowed a local user to execute arbitrary code with elevated administrator privileges by placing a malicious DLL file in the installer directory","summary":"A DLL hijacking vulnerability in the FileMaker Pro installer for Windows allowed a local user to execute arbitrary code with elevated administrator privileges by placing a malicious DLL file in the installer directory. This vulnerability…","severity":"none","vendor":"Claris","product":"FileMaker Pro","affected":["filemaker_pro < 26.0.3"],"published":"2026-09-23","updated":"2026-09-23","sourceUpdated":"2026-09-23T18:22:36.150","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-86938","references":[{"url":"https://support.claris.com/s/answerview?anum=000049220&language=en_US","label":"product-security@apple.com"}],"tags":["nvd","cve.org"],"ingestedAt":"2026-09-23T17:28:14.860Z","slug":"CVE-2026-86938","body":"## Overview\n\nA DLL hijacking vulnerability in the FileMaker Pro installer for Windows allowed a local user to execute arbitrary code with elevated administrator privileges by placing a malicious DLL file in the installer directory. This vulnerability is addressed in FileMaker Pro version 26.0.3.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":3,"depthScoreParts":{"impact":2.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}