Microsoft Windows Push Notifications Information Disclosure Vulnerability

Vulnerability

A vulnerability in Windows Push Notifications allows an authorized attacker to disclose sensitive information locally. This issue arises from the exposure of information to an unauthorized actor, potentially leaking the address of a medium integrity process to a lower integrity caller process.

Impact

Exploitation of this vulnerability could lead to unauthorized information disclosure, allowing an attacker to access sensitive data from a local process.

Remediation

Users can apply the security update for this vulnerability, which is available through the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5101649, KB5095051, KB5099536, KB5099540, and KB5099539.

Added: Jul 14, 2026, 11:32 PM
Updated: Jul 14, 2026, 11:32 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
3.3
remediation
7.7
relevance
9.6
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.