---
id: CVE-2026-19193
title: A flaw has been found in Jiangmin Antivirus 21
summary: >-
  A flaw has been found in Jiangmin Antivirus 21. Impacted is the function
  MessageNotifyCallback in the library kvcore.sys of the component Minifilter
  Port. Executing a manipulation can lead to improper access controls. The
  attack needs to…
severity: high
cvss: 7.8
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-266
  - CWE-284
published: '2026-08-07'
updated: '2026-08-09'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-19193'
references:
  - url: 'https://github.com/patrickt2017/CVE-2026-19193-PoC'
    label: cna@vuldb.com
  - url: 'https://github.com/patrickt2017/research/issues/1'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/cve/CVE-2026-19193'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/submit/864551'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/386711'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/386711/cti'
    label: cna@vuldb.com
tags:
  - nvd
  - exploit-available
epss: 0.00162
epssPercentile: 0.0475
ingestedAt: '2026-08-09T06:32:53.435Z'
exploits:
  github: 1
  githubRepos:
    - 'https://github.com/patrickt2017/CVE-2026-19193-PoC'
  checkedAt: '2026-09-27T10:33:41.389Z'
exploitAvailable: true
---

## Overview

A flaw has been found in Jiangmin Antivirus 21. Impacted is the function MessageNotifyCallback in the library kvcore.sys of the component Minifilter Port. Executing a manipulation can lead to improper access controls. The attack needs to be launched locally. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
