Microsoft Windows File Explorer Information Disclosure Vulnerability

Vulnerability

A vulnerability in Windows File Explorer allows an authorized attacker to locally disclose sensitive information to an unauthorized actor. This issue affects multiple Windows versions and stems from improper handling of local memory addresses.

Impact

Exploitation of this vulnerability could lead to unauthorized disclosure of sensitive information, specifically local memory addresses.

Remediation

Users can apply the security update KB5073724 for Windows 10, KB5073722 for Windows Server 2019, and KB5073457 for Windows Server 2022. For Windows 11, the security update KB5074109 is available for both x64-based and ARM64-based systems. Instructions for downloading these security updates can be found on the Microsoft Update Catalog.

Added: Jan 13, 2026, 7:16 PM
Updated: Jan 13, 2026, 7:16 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
3.3
remediation
7.7
relevance
1.9
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.