Overview
What is CVE-2026-61928?
Cleartext storage of sensitive information in Windows Hello allows an authorized attacker to perform tampering locally.
Vulnerability intelligence
CVE-2026-61928 and is rated Medium severity with a CVSS score of 5.5. It is not in the current CISA KEV record we collected. That does not prove exploitation has not occurred.
Cleartext storage of sensitive information in Windows Hello allows an authorized attacker to perform tampering locally.