Zero Day Monitor
DashboardVulnerabilitiesTrendingZero-DaysNews
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
1405 articles · 106464 vulns · 36/55 feeds (7d)
← Back to list
5.5
CVE-2026-20805KEV

Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allows an authorized attacker to disclose information locally.

Description

Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allows an authorized attacker to disclose information locally.

Affected Products

VendorProductVersions
microsoftwindows_10_1607< 10.0.14393.8783, < 10.0.14393.8783, < 10.0.17763.8276, < 10.0.17763.8276, < 10.0.19044.6809, < 10.0.19045.6809, < 10.0.22631.6491, < 10.0.26100.7623, < 10.0.26200.7623, < 10.0.14393.8783, < 10.0.17763.8276, < 10.0.20348.4648, < 10.0.25398.2092, < 10.0.26100.7623

References

  • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20805(Vendor Advisory)
  • https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-20805(US Government Resource)

Related News (1 articles)

Tier B
JPCERT/CC
Security Alert: Microsoft Releases January 2026 Security Updates
→ No new info (linked only)
CVSS 3.15.5 MEDIUM
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CISA KEV✅ Yes
Actively exploited✅ Yes
CWECWE-200
Published1/13/2026
Last enriched12h ago
Trending Score82
Source articles1
Independent1
Info Completeness10/14
Missing: epss, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Pin to Dashboard

Verification

State: verified
Confidence: 100%