app_installer vulnerabilities
CVEs whose affected-version data names the app_installer package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-68821High· 7.3Improper privilege management in Windows Package Manager allows an authorized attacker to elevate privileges locally.
Improper privilege management in Windows Package Manager allows an authorized attacker to elevate privileges locally.
▾ Twilightmicrosoft · app_installerEPSS 0.27%via NVD
CVE-2021-43890High· 7.1CISA KEV0dayWe have investigated reports of a spoofing vulnerability in AppX installer that affects Microsoft Windows
We have investigated reports of a spoofing vulnerability in AppX installer that affects Microsoft Windows. Microsoft is aware of attacks that attempt to exploit this vulnerability by using specially crafted packages that include the malw…
▾ Abyssalmicrosoft · app_installerEPSS 10%via NVD