๐Ÿ” CVE Alert

CVE-2026-3609

MEDIUM 5.3

XIGNCODE3 xhunter1.sys kernel driver contains a Privilege Escalation Vulnerability

CVSS Score
5.3
EPSS Score
0.2%
EPSS Percentile
7th

Wellbia's XIGNCODE3 xhunter1.sys kernel driver, version 10.0.10011.16384 through 2023.12.7.78, privilege escalation vulnerability provides access to the IRP_MJ_WRITE command interface, which allows any user process to request a PROCESS_ALL_ACCESS. Note: KVE 2023-5589 (https://krcert.or.kr) was initially issued for version 10.0.10011.16384, but the vulnerability was not fully remediated and remains in version 2023.12.7.78.

Vendor wellbia
Product xigncode3
Published May 11, 2026
Last Updated Aug 5, 2026
Stay Ahead of the Next One

Get instant alerts for wellbia xigncode3

Be the first to know when new medium vulnerabilities affecting wellbia xigncode3 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Wellbia / XIGNCODE3
10.0.10011.16384 โ‰ค 2023.12.7.78

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
crcert.or.kr: https://crcert.or.kr blacksnufkin.github.io: https://blacksnufkin.github.io/posts/AntiCheat-LPE-CVE-2026-3609/ blacksnufkin.github.io: https://blacksnufkin.github.io/posts/Hunting-the-Hunter/