Microsoft XML Core Services (MSXML) improperly handles objects in memory, allowing attackers to test for files on disk via a crafted web site.
Source: NVD ↗ · CISA KEV Catalog ↗