
CVE-2026-27925 Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to disclose information over an adjacent network. https://www.cve.org/CVERecord?id=CVE-2026-27925
Post summary
The excerpt details a use‑after‑free vulnerability in Windows UPnP Device Host that could lead to network information disclosure, but provides no PoC, exploit, patch, or evidence of active exploitation.

