CVE-2026-49312: Medium severity vulnerability
Published Sep 9, 2026
·Updated
Permission control vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Event History
Sep 9, 2026
CVE Published
via MITRE·03:23 AM
Data Sourced
via MITRE·03:23 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need to attempt exploitation?
The attack vector is local, so an attacker needs local access to the affected system. No privileges or user interaction are required, but exploitation has high attack complexity.
2
What is the expected impact if exploitation succeeds?
The reported impact includes low confidentiality impact and low availability impact. Integrity impact is listed as none.