AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-62709

MEDIUM · CVSS 5.5 EPSS 0.39%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

A vulnerability in Windows GDI+ allows an authorized attacker to exploit uninitialized resources, potentially leading to local information disclosure. This issue poses a medium risk, and organizations using affected Windows products should prioritize patching to mitigate the risk of sensitive data exposure. Security teams and system administrators should assess their environments for this vulnerability and apply necessary updates.

CVE
CVE-2026-62709
Severity
MEDIUM
CVSS
5.5
EPSS
0.39%
Windows

Original NVD Description

Use of uninitialized resource in Windows GDI+ allows an authorized attacker to disclose information locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)