CVE-2026-69846 – Windows Secure Kernel Mode Elevation of Privilege Vulnerability
CVSS 8.2
IMPORTANT
Critical - Same Day Deployment
“An attacker who already controls the Windows kernel could use this flaw to break into the more protected VTL1 environment, putting sensitive system operations at risk.”
CVE-2026-69846 is a critical elevation-of-privilege vulnerability in Windows Secure Kernel Mode caused by an integer overflow or wraparound. An authorized attacker who already has kernel-level access could submit a specially crafted Code Integrity policy and potentially execute code with Virtual Trust Level 1 (VTL1) privileges. The vulnerability is not publicly disclosed and is not known to be exploited.
Key Details
- Attack Vector
- Local
- Attack Complexity
- Low
- Privileges Required
- High
- User Interaction
- None
- CWE Classification
- CWE-190
Patch this CVE on all your endpoints in under 5 minutes.
First 200 endpoints are free forever, scale as needed.