CVE-2026-12168
Little Orbit GameFirst Anti-Cheat
An improper validation vulnerability for driver `GFAC_Sys_x64.sys` in Little Orbit GFAC allows a local attacker to escalate privileges to SYSTEM and execute arbitrary code in kernel mode via crafted messages sent through a Minifilter communication port.
- CVSS
- 7.8
- EPSS
- 0.16% 5.95% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.03