Search

Desktop Window Manager Information Disclosure

Published January 14, 2026
CVE-2026-20805
Critical Active Zero-Day

What Is This?

Actively exploited zero-day allowing attackers to read memory addresses from remote ALPC port. Added to CISA KEV catalog.

Affected Systems

Windows 10 Windows 11 Windows Server