You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve-2026-45606
About this tag
CVE-2026-45606 is a denial-of-service vulnerability in the Windows UxTheme Library (uxtheme.dll), disclosed by Microsoft on June 9, 2026. The flaw is an out-of-bounds read that a local attacker with low privileges can exploit to disrupt service. It carries a CVSS score of 5.5 (Important) with no confidentiality or integrity impact, and no evidence of public disclosure or active exploitation at publication. This CVE highlights that even core aesthetic components like uxtheme.dll can harbor security issues, underscoring the importance of applying Patch Tuesday fixes to maintain system stability.
Microsoft disclosed CVE-2026-45606 on June 9, 2026, as a denial-of-service vulnerability in the Windows UxTheme Library, uxtheme.dll, caused by an out-of-bounds read that a local authorized attacker could use to disrupt service. The score is not headline-grabbing: CVSS 5.5, “Important,” local...