CVE-2026-21222Log File Information Exposure in Microsoft Windows 10 Version 1607

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 87.79%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 10

Description

Insertion of sensitive information into log file in Windows Kernel allows an authorized attacker to disclose information locally.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages19 packages

NVDmicrosoft/windows< 10.0.14393.8868+5
NVDmicrosoft/windows_10_1607< 10.0.14393.8868
NVDmicrosoft/windows_10_1809< 10.0.17763.8389
NVDmicrosoft/windows_10_21h2< 10.0.19044.6937
NVDmicrosoft/windows_10_22h2< 10.0.19045.6937

🔴Vulnerability Details

2
GHSA
GHSA-qr2v-788m-xvqc: Insertion of sensitive information into log file in Windows Kernel allows an authorized attacker to disclose information locally2026-02-10
CVEList
Windows Kernel Information Disclosure Vulnerability2026-02-10

📋Vendor Advisories

1
Microsoft
Windows Kernel Information Disclosure Vulnerability2026-02-10

🕵️Threat Intelligence

1
Wiz
CVE-2026-21222 Impact, Exploitability, and Mitigation Steps | Wiz
CVE-2026-21222 — Log File Information Exposure | cvebase