CVE-2026-40377

HIGH

Heap-based buffer overflow in Windows Cryptographic Services allows an authorized attacker to elevate privileges locally.