CVE-2026-83498 – Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability
CVSS 7.8
IMPORTANT
Critical - Same Day Deployment
“This VBS Enclave flaw can weaken a critical Windows security boundary, potentially exposing protected data or allowing code to run inside a trusted enclave.”
CVE-2026-83498 is an elevation of privilege vulnerability in Windows Virtualization-Based Security (VBS) Enclave caused by an untrusted pointer dereference. A local attacker with low privileges could potentially exploit the flaw to leak data from a target enclave or execute code within the context of that enclave. The vulnerability requires no user interaction and has low attack complexity.
Key Details
- Attack Vector
- Local
- Attack Complexity
- Low
- Privileges Required
- Low
- User Interaction
- None
- CWE Classification
- CWE-822
Patch this CVE on all your endpoints in under 5 minutes.
First 200 endpoints are free forever, scale as needed.