CVE-2026-26986 | FreeRDP up to 3.22.x rail_window_free xfAppWindow use after free (GHSA-crqx-g6x5-rx47 / Nessus ID 299997)
A vulnerability classified as critical was found in FreeRDP up to 3.22.x. This affects the function rail_window_free. The manipulation of the argument xfAppWindow results in use after free.
This vulnerability is cataloged as CVE-2026-26986. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.