CVE-2026-19820
EUVD-2026-6891601.09.2026, 01:16
A vulnerability in the Backblaze Client allows a local user to make the system not bootable by creating a link from Backblaze's folder to Windows OS system files during a backup. Successful exploitation requires an administrator-level system change that results in the absence of specific Windows OS security controls. This vulnerability is due to improper link resolution.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| backblaze | backblaze | 10.0.0.1029 | CNA |
| backblaze | backblaze | 10.0.1.10307 | CNA |
| backblaze | backblaze | 10.0.2.1047 | CNA |