CyberRota Analysis
AI-GeneratedA heap-based buffer overflow vulnerability in Windows GDI+ allows an authorized attacker to execute arbitrary code locally, potentially compromising system integrity and confidentiality. Organizations using affected Windows products should prioritize patching this vulnerability to mitigate the risk of exploitation. This is particularly critical for environments where GDI+ is extensively utilized in applications.
CVE
CVE-2026-62890
Severity
HIGH
CVSS
7.8
EPSS
0.27%
Windows
Original NVD Description
Heap-based buffer overflow in Windows GDI+ allows an authorized attacker to execute code locally.
Related CVEs
Other vulnerabilities affecting the same vendor(s)