logo

January 2026 Patch Tuesday: 114 CVEs Patched Including 3 Zero-Days

ID: 2c2a5dc9-2ae5-5eb2-83f8-add8db0fb00a

STIX ID: report--2c2a5dc9-2ae5-5eb2-83f8-add8db0fb00a

Feed Name: Crowdstrike Blog

Threat Score
80/100

Date Published: 2026-01-13

Date Updated: 2026-04-27

Author: Falcon Exposure Management Team

...
...

This CrowdStrike Patch Tuesday bulletin details multiple Microsoft vulnerabilities—most notably an actively exploited Desktop Window Manager information-disclosure zero-day (CVE-2026-20805)—alongside several critical remote code execution and privilege-escalation flaws in Microsoft Office, Windows Graphics, LSASS, Secure Boot and other components; it provides CVSS scores, exploitation impact and required attacker conditions, and directs readers to patches, mitigations and the Falcon platform dashboards for prioritization.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.