CVE-2026-6484CWE-1277

CVE-2026-6484

High · published August 12, 2026

CVSS v3.1
8.2
EPSS
0%
Percentile
4.0
In the wild
Unconfirmed
What it is

In an UEFI, Lack of verified boot to certain FV may cause arbitrary code execution.

The record
Technical detail
CVSS v3.1
8.2 · HIGH
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
CVSS v4.0
Not supplied
EPSS
0.00144 · 4.0th percentile
Weakness
CWE-1277 · Firmware Not Updateable
Published
2026-08-12T05:17Z
References (1)
EPSS history
Timeline
  • 12 AUG 00:20Z
    Lack of verified boot to certain FV may cause arbitrary code execution
    cvelistv5