CVE-2026-65784: Windows NTFS Information Disclosure Vulnerability
Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.
Other sources
Windows NTFS Information Disclosure Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.9115Patch KB5120238 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.20348.5499Fixed in 10.0.20348.5440Patch KB5120229 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.7663Patch KB5120249
Event History
Frequently Asked Questions
What is the severity of CVE-2026-65784?
CVE-2026-65784 has a medium severity rating of 5.5.
How do I fix CVE-2026-65784?
To fix CVE-2026-65784, users should apply the latest security updates provided by Microsoft.
What systems are affected by CVE-2026-65784?
CVE-2026-65784 affects Microsoft Windows 10, Windows Server 2019, and Windows Server 2022.
What is the nature of the vulnerability in CVE-2026-65784?
CVE-2026-65784 is an out-of-bounds read vulnerability that allows information disclosure.
Who can exploit CVE-2026-65784?
CVE-2026-65784 can be exploited by an authorized attacker with local access to the affected systems.