ZeroHour

CVE-2026-68830

CVSS 3.1
5.5 medium
EPSS
<1%p21
Published
()
Modified
Description

Improper link resolution before file access ('link following') in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to disclose information locally.

Weakness
CWE-59, CWE-269
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.