MEDIUM 5.5 NVD
CVE-2026-73008
Exposure of private personal information to an unauthorized actor in Windows Biometric Service allows an authorized attacker to disclose information locally.
Exposure of private personal information to an unauthorized actor in Windows Biometric Service allows an authorized attacker to disclose information locally.
Affected Products
- microsoft/windows_10_1607
- microsoft/windows_10_1809
- microsoft/windows_10_21h2
- microsoft/windows_10_22h2
- microsoft/windows_11_23h2
- microsoft/windows_11_24h2
- microsoft/windows_11_25h2
- microsoft/windows_11_26h1
References
This medium severity vulnerability with a CVSS score of 5.5 was published on 2026-09-08 via NVD. Affected: microsoft/windows_10_1607, microsoft/windows_10_1809, microsoft/windows_10_21h2 and 5 more.
vulnfeed aggregates 13138 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.