CVE-2026-59136 Microsoft COM for Windows Information Disclosure Vulnerability Use of uninitialized resource in Microsoft COM for Windows allows an authorized attacker to disclose information locally. EPSS 0.00 CVE-2026-59136 Microsoft US Microsoft Security · 11. 8. 16:00