cbcvebase.
CVE-2026-20818
published 2026-01-13

CVE-2026-20818: Insertion of sensitive information into log file in Windows Kernel allows an unauthorized attacker to disclose information locally.

medium6.2CVSS 3.1
AVLACLPRNUINSUCHINAN
Insertion of sensitive information into log file in Windows Kernel allows an unauthorized attacker to disclose information locally.

Affected

14 ranges
VendorProductVersion rangeFixed in
microsoftwindows_server_2016< 10.0.14393.878310.0.14393.8783
microsoftwindows_server_2016>= 10.0.14393.0 < 10.0.14393.878310.0.14393.8783
microsoftwindows_server_2019< 10.0.17763.827610.0.17763.8276
microsoftwindows_server_2019>= 10.0.17763.0 < 10.0.17763.827610.0.17763.8276
microsoftwindows_server_2022< 10.0.20348.464810.0.20348.4648
microsoftwindows_server_2022>= 10.0.20348.0 < 10.0.20348.464810.0.20348.4648
microsoftwindows_server_2022_23h2< 10.0.25398.209210.0.25398.2092
microsoftwindows_server_2025< 10.0.26100.762310.0.26100.7623
microsoftwindows_server_2025>= 10.0.26100.0 < 10.0.26100.3223010.0.26100.32230
msrcwindows_server_2016
msrcwindows_server_2019
msrcwindows_server_2022
msrcwindows_server_2022_23h2_edition
msrcwindows_server_2025