CVE-2025-26665

Publication date

2025-04-08 17:23:06

Family

microsoft

State

PUBLISHED

Description

Sensitive data storage in improperly locked memory in Windows upnphost.dll allows an authorized attacker to elevate privileges locally.