CyberRota Analysis
AI-GeneratedA vulnerability in Windows GDI+ allows an authorized attacker to exploit uninitialized resources, potentially leading to local information disclosure. This could expose sensitive data to users with access to the affected system. Organizations using Windows should prioritize addressing this issue to mitigate the risk of unauthorized data exposure.
CVE
CVE-2026-69288
Severity
MEDIUM
CVSS
5.5
EPSS
0.31%
Windows
Original NVD Description
Use of uninitialized resource in Windows GDI+ allows an authorized attacker to disclose information locally.