Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.
CVE-2026-20937 Windows File Explorer Information Disclosure Vulnerability
Published January 14, 2026
Published January 14, 2026
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.