Api.Msrc.Microsoft
Multiple Vulnerabilities in Windows GDI+ Disclosed
First seen 10 Mar 2026, 17:28 UTC
•
•57.8
Export
Article Content
Browse articles
Two vulnerabilities in Windows GDI+ have been reported, affecting the ability of unauthorized attackers to disclose information and execute code. CVE-2026-25181 allows for information disclosure through an out-of-bounds read, while another CVE indicates an untrusted path that could enable local code execution. Both vulnerabilities were published on 2026-03-10.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
2026-03-10
CVE-2026-25181 published
2026-03-10
Second CVE related to GDI+ published
More articles in this cluster
Continue Reading
Google Addresses Eighth Chrome Zero-Day Vulnerability in 2025
China-linked Cyber Group Expands Targeting to Southeastern Europe
China-Nexus APT UAT-7290 Targets South Asia Telecoms in Cyber Espionage Campaign
China-linked UAT-7290 Targets Telcos in Cyberespionage Campaign
UAT-7290 Cyber Espionage Targets South Asian Telecoms
APT28 Exploits MSHTML Zero-Day Vulnerability in Windows