Multiple CVEs Affect Windows Virtualization-Based Security (VBS) Enclave
First seen 13 Jan 2026, 20:07 UTC
•
•49
Export
Article Content
Browse articles
Four vulnerabilities have been identified in Windows Virtualization-Based Security (VBS) Enclave, allowing both authorized and unauthorized attackers to disclose information or elevate privileges locally. The vulnerabilities include untrusted pointer dereferences and a heap-based buffer overflow, impacting the security of systems utilizing VBS. Specific CVEs include CVE-2026-20819, CVE-2026-20938, CVE-2026-20876, and CVE-2026-20935.
Ask AI about this cluster
Answers cite the sources they use
Analyzing cluster data...
Referenced clusters
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Google Addresses Eighth Chrome Zero-Day Vulnerability in 2025
China-linked Cyber Group Expands Targeting to Southeastern Europe
China-Nexus APT UAT-7290 Targets South Asia Telecoms in Cyber Espionage Campaign
China-linked UAT-7290 Targets Telcos in Cyberespionage Campaign
UAT-7290 Cyber Espionage Targets South Asian Telecoms
APT28 Exploits MSHTML Zero-Day Vulnerability in Windows