Sep 2026: Microsoft Remote Desktop App for Windows Information Disclosure Vulnerability
CVE-2026-57098 Published on September 8, 2026

Microsoft Remote Desktop App for Windows Information Disclosure Vulnerability
Improper verification of cryptographic signature in Windows RDP Client allows an unauthorized attacker to disclose information over a network.

Vendor Advisory NVD

Weakness Type

Improper Verification of Cryptographic Signature

The software does not verify, or incorrectly verifies, the cryptographic signature for data.


Products Associated with CVE-2026-57098

Want to know whenever a new CVE is published for Microsoft Remote Desktop? stack.watch will email you.

 

Affected Versions

Microsoft Remote Desktop client for Windows Desktop: