A vulnerability was found in FreeRDP up to 3.28.x and classified as critical. This vulnerability affects unknown code of the component Async Update Message Proxy. Such manipulation leads to use after free.

This vulnerability is documented as CVE-2026-67300. The attack can be executed remotely. There is not any exploit available.

It is suggested to upgrade the affected component.