CVE-2026-63278

CVE-2026-63278 published: URLs could be constructed which expanded environment variable or INI file values, so potentially sensitive information could be exfiltrated to a remote server on opening a document containing such links. The check added for CVE-2024-12426 did not recognise ...

View full NVD advisory → ← Back to CVE watch