Skip to content

Microsoft WinRE Vulnerability Allows Hackers to Bypass UEFI/BIOS Password Enforcement

Gbhackers •Divya • June 25, 2026

A newly disclosed vulnerability in the Microsoft Windows Recovery Environment (WinRE) could allow attackers to bypass UEFI and BIOS password protections, exposing systems to unauthorized access even when firmware-level security controls are active. This issue, tracked under CERT/CC VU#226679 and associated with CVE-2026-45585, affects Windows 10 and Windows 11 systems that use WinRE for recovery […]

Extracted Entities

Platforms (1)

Vulnerabilities (1)