HIGHVulnerability

CVE-2026-6726

An information leakage vulnerability was reported in the TCG TPM 2.0 reference code that could allow a local attacker with elevated privileges to obtain a credential from a TPM-aware CA for a falsified TPM key (such as an Attestation Key, DevID Key or TLS authentication key) and falsify other TPM 2.0 attestations with this key. See also TCG VRT0010.

Properties

severity
HIGH
score
7.9
cve_id
CVE-2026-6726
vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N
published_at
2026-08-11T16:17:34.397
last_modified
2026-09-08T14:09:00.860

Related Entities (2)

DESCRIBED_BY (1)

[Source]NVD

HAS_WEAKNESS (1)

[Weakness]Incorrect Type Conversion or Cast

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-6726 — Ninja Signal Threat Intelligence | Ninja Signal