VORANT. Threat Intelligence Sign in Get the full feed

Microsoft Patch Tuesday Fixes Exploited CVE-2026-20805

high vulnerability technology

IPA warns that Microsoft's January 2026 patches address a vulnerability, CVE-2026-20805, already being exploited in the wild.

IPA (Japan's Information-technology Promotion Agency) issued an alert on January 14, 2026, summarizing Microsoft's monthly security update release. The bulletin covers multiple vulnerabilities affecting Microsoft products that could allow application crashes or full attacker control of affected systems if exploited.

Of particular concern is CVE-2026-20805, which Microsoft has confirmed is being actively exploited in the wild. IPA warns that damage from this flaw could expand and urges organizations and users to apply the security updates immediately, either through automatic Windows Update or via managed patch deployment processes. No technical details of the exploitation or specific threat actors were disclosed in this advisory.

Mentioned in this report

Vulnerabilities CVE-2026-20805KEV

Source reporting: https://www.ipa.go.jp/security/security-alert/2025/0114-ms.html

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free