Use of uninitialized resource in Windows Event Logging Service allows an authorized attacker to disclose information locally.
Microsoft
CVE-2026-59137 CVSS 5.5
2026-08-11 07:00 UTC · 2026-08-11 04:00 -03
Use of uninitialized resource in Windows Event Logging Service allows an authorized attacker to disclose information locally.
Improper neutralization of special elements used in a command ('command injection') in Windows Active Directory allows an unauthorized attacker to execute code over a network.
https://security-tracker.debian.org/tracker/DSA-6431-1
https://security-tracker.debian.org/tracker/DSA-6430-1
https://security-tracker.debian.org/tracker/DSA-6429-1