Junglewise Threat Intelligence

CVE-2026-42983: Microsoft Windows use after free in DWM Core Library

CVE-2026-42983 · Severity: high · CVSS 7.8 · Published 2026-06-09

Technologies: Microsoft Windows. Vendors: Microsoft.

Executive brief

A security vulnerability exists in the Windows Desktop Window Manager (DWM) Core Library, which is responsible for rendering visual effects on the Windows desktop. An attacker who already has basic access to a computer could exploit this flaw to gain full administrative control over the system. This could allow them to install programs, view or delete sensitive data, or create new accounts with full user rights.

Technical details

A use-after-free vulnerability (CWE-416) exists within the Windows DWM Core Library (dwmcore.dll). The flaw is triggered when the system continues to use a pointer to a memory location after it has been deallocated. An attacker with local access and low-level privileges can exploit this condition to execute arbitrary code in a highly privileged context. The attack requires no user interaction and has a low complexity, potentially leading to a full compromise of the system's integrity, confidentiality, and availability. Microsoft has released security updates to address this issue.

Affected products

  • Microsoft Windows

Timeline

  • 2026-06-09: disclosed
  • 2026-06-09: advisory

References