Impact
An out‑of‑bounds read in the Windows DWM Core Library can be triggered by an attacker with authorized local rights, allowing them to read memory contents that were not intended for disclosure. This memory safety flaw does not grant code execution or privilege escalation, but it permits local disclosure of arbitrary data present in memory at the time of the read.
Affected Systems
Microsoft Windows 11 Version 24H2, Windows 11 Version 25H2, Windows 11 Version 26H1, Windows Server 2025, and Windows Server 2025 Server Core installations are listed as affected; the exploit requires local authorized user rights.
Risk and Exploitability
The CVSS score of 5.5 classifies this issue as medium severity, and the EPSS score of less than 1% indicates that exploitation is considered unlikely at present. Because the vulnerability is listed as not in the CISA KEV catalog and it requires a valid local account, the practical risk is limited to environments where privileged users are compromised or social engineering could obtain local credentials. An attacker who succeeds can read arbitrary data present in memory at the time.
OpenCVE Enrichment