SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-40422

MEDIUM · CVSS 5.5 EPSS 0.30%

Source: NVD + CISA KEV + EPSS · Published 2026-07-14 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

Windows File Explorer contains a vulnerability due to the use of uninitialized resources, which could allow an authorized attacker to disclose sensitive information locally. This issue poses a medium risk, primarily affecting Windows users and organizations that rely on File Explorer for file management. IT security teams should prioritize this vulnerability to mitigate potential information leakage risks within their environments.

CVE
CVE-2026-40422
Severity
MEDIUM
CVSS
5.5
EPSS
0.30%
Windows

Original NVD Description

Use of uninitialized resource in Windows File Explorer allows an authorized attacker to disclose information locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)