Microsoft Security Response Center Follow CVE-2026-78463 Remote Desktop Client Remote Code Execution Vulnerability Improper control of generation of code ('code injection') in Remote Desktop Client allows an unauthorized attacker to execute code over a network. https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-78463 msrc.microsoft.com