AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-62890

HIGH · CVSS 7.8 EPSS 0.27%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

A heap-based buffer overflow vulnerability in Windows GDI+ allows an authorized attacker to execute arbitrary code locally, potentially compromising system integrity and confidentiality. Organizations using affected Windows products should prioritize patching this vulnerability to mitigate the risk of exploitation. This is particularly critical for environments where GDI+ is extensively utilized in applications.

CVE
CVE-2026-62890
Severity
HIGH
CVSS
7.8
EPSS
0.27%
Windows

Original NVD Description

Heap-based buffer overflow in Windows GDI+ allows an authorized attacker to execute code locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)