CVE-2026-18023
CVE-2026-18023 is a medium-severity vulnerability with a CVSS 4.0 base score of 5.7. It is not currently listed as actively exploited by CISA, and its EPSS exploit-prediction score is low. The underlying weakness is classified as CWE-226.
Key facts
- Severity: Medium (CVSS 4.0 base score 5.7)
- EPSS exploit prediction: 0% (1st percentile)
- Actively exploited: Not listed in CISA KEV
- Weakness: CWE-226
- Published:
- Last modified:
Description
Sensitive Information in Resource Not Removed Before Reuse in ASUS Armoury Crate driver allows a local user to disclose sensitive information from uninitialized memory via a crafted IOCTL request that bypasses the driver's security verification mechanism. Refer to the ' Security Update for Armoury Crate App ' section on the ASUS Security Advisory for more information.
Frequently asked questions
- What is CVE-2026-18023?
- Sensitive Information in Resource Not Removed Before Reuse in ASUS Armoury Crate driver allows a local user to disclose sensitive information from uninitialized memory via a crafted IOCTL request that bypasses the driver's security verification mechanism. Refer to the ' Security Update for Armoury Crate App ' section on the ASUS Security Advisory for more information.
- How severe is CVE-2026-18023?
- CVE-2026-18023 has a CVSS 4.0 base score of 5.7, rated medium severity.
- Is CVE-2026-18023 being actively exploited?
- It is not currently listed in CISA's KEV catalog. Its EPSS exploit-prediction score is 0% (1st percentile), an estimate of the probability of exploitation in the next 30 days.
- How do I fix CVE-2026-18023?
- Review the linked vendor and NVD advisories for patched versions and mitigations, then upgrade or apply the recommended workaround.
- When was CVE-2026-18023 published?
- CVE-2026-18023 was published on 2026-09-08 and last updated on 2026-09-17.
References
Other CWE-226 vulnerabilities
- CVE-2026-74791 — High (CVSS 8.6): Scriban before 7.0.0 fails to clear the CachedTemplates dictionary when TemplateContext.Reset() is called, allowing…
- CVE-2026-13585 — High (CVSS 8.2): Allocation of Resources Without Limits and Throttling and Sensitive Information in Resource Not Removed Before Reuse in…
- CVE-2025-0647 — High (CVSS 7.9): In certain Arm CPUs, a CPP RCTX instruction executed on one Processing Element (PE) may inhibit TLB invalidation when a…
- CVE-2019-25560 — High (CVSS 7.5): Lyric Video Creator 2.1 contains a denial of service vulnerability that allows attackers to crash the application by…
- CVE-2023-41138 — High (CVSS 7.5): The AppsAnywhere macOS client-privileged helper can be tricked into executing arbitrary commands with elevated…
- CVE-2026-5795 — High (CVSS 7.4): In Eclipse Jetty, the class JASPIAuthenticator initiates the authentication checks, which set two ThreadLocal…