CVE-2026-69846 – Windows Secure Kernel Mode Elevation of Privilege Vulnerability

CVSS 8.2 IMPORTANT Critical - Same Day Deployment

“An attacker who already controls the Windows kernel could use this flaw to break into the more protected VTL1 environment, putting sensitive system operations at risk.”

CVE-2026-69846 is a critical elevation-of-privilege vulnerability in Windows Secure Kernel Mode caused by an integer overflow or wraparound. An authorized attacker who already has kernel-level access could submit a specially crafted Code Integrity policy and potentially execute code with Virtual Trust Level 1 (VTL1) privileges. The vulnerability is not publicly disclosed and is not known to be exploited.

Key Details

Attack Vector
Local
Attack Complexity
Low
Privileges Required
High
User Interaction
None
CWE Classification
CWE-190
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.