CVE-2026-20811 | Microsoft Windows up to Server 2025 Win32k type confusion (WID-SEC-2026-0083)
A vulnerability classified as critical was found in Microsoft Windows up to Server 2025. Affected is an unknown function of the component Win32k. The manipulation results in type confusion.
This vulnerability is identified as CVE-2026-20811. The attack is only possible with local access. There is not any exploit available.
A patch should be applied to remediate this issue.