VYPR
Unrated severityNVD Advisory· Published Mar 11, 2026· Updated Mar 13, 2026

CVE-2026-0940

CVE-2026-0940

Description

A potential improper initialization vulnerability was reported in the BIOS of some ThinkPads that could allow a local privileged user to modify data and execute arbitrary code.

Affected products

9
  • Lenovo/Thinkpadllm-fuzzy
  • Lenovo/ThinkPad P14s Gen 5 BIOSv5
    Range: 0
  • Lenovo/ThinkPad P15v Gen 3 BIOSv5
    Range: 0
  • Lenovo/ThinkPad P16v Gen 1 BIOSv5
    Range: 0
  • Lenovo/ThinkPad T14 Gen 5 BIOSv5
    Range: 0
  • Lenovo/ThinkPad Z13 Gen 1 BIOSv5
    Range: 0
  • Lenovo/ThinkPad Z13 Gen 2 BIOSv5
    Range: 0
  • Lenovo/ThinkPad Z16 Gen 1 BIOSv5
    Range: 0
  • Lenovo/ThinkPad Z16 Gen 2 BIOSv5
    Range: 0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.