Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

Microsoft Windows Graphics Component RCE via crafted font file

Summary

A critical flaw in Microsoft Windows Graphics Component allows attackers to execute malicious code on a compromised system. This vulnerability can be exploited by opening a specially crafted font file, potentially leading to unauthorized access to sensitive data or system takeover. Users should update to the latest version of the Windows Graphics Component to mitigate this risk.

What to do
  • Update chainguard traefik-3.5 to version 3.5.6-r6.
  • Update wolfi traefik-3.5 to version 3.5.6-r6.
Affected software
VendorProductAffected versionsFix available
chainguard traefik-3.5 <= 3.5.6-r6 3.5.6-r6
wolfi traefik-3.5 <= 3.5.6-r6 3.5.6-r6
Original title
CGA-rp9x-w992-wchr
Published: 12 Apr 2026 · Updated: 12 Apr 2026 · First seen: 12 Apr 2026