CVE-2026-83498 – Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability

CVSS 7.8 IMPORTANT Critical - Same Day Deployment

“This VBS Enclave flaw can weaken a critical Windows security boundary, potentially exposing protected data or allowing code to run inside a trusted enclave.”

CVE-2026-83498 is an elevation of privilege vulnerability in Windows Virtualization-Based Security (VBS) Enclave caused by an untrusted pointer dereference. A local attacker with low privileges could potentially exploit the flaw to leak data from a target enclave or execute code within the context of that enclave. The vulnerability requires no user interaction and has low attack complexity.

Key Details

Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
CWE Classification
CWE-822
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.