Windows Task Host flaw now exploited by ransomware gangs post, augustus 18, 2026augustus 24, 2026 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that ransomware gangs are also exploiting a high-severity Windows Task Host vulnerability that was flagged as actively exploited in April. Task Host is a core Windows system component that allows DLL-based processes to run in the background and prevents data corruption by ensuring they close properly during shutdown. Tracked as CVE-2025-60710, this Windows privilege escalation security flaw was patched by Microsoft in November 2025 and stems from a link following weakness that affects Windows 11 and Windows Server 2025 devices. CISA: Windows Task Host flaw now exploited by ransomware gangs: Windows Task Host flaw now exploited by ransomware gangs ransomware 2026