Unrated severityNVD Advisory· Published Mar 11, 2026· Updated Mar 13, 2026
CVE-2026-0940
CVE-2026-0940
Description
A potential improper initialization vulnerability was reported in the BIOS of some ThinkPads that could allow a local privileged user to modify data and execute arbitrary code.
Affected products
9- Lenovo/ThinkPad P14s Gen 5 BIOSv5Range: 0
- Lenovo/ThinkPad P15v Gen 3 BIOSv5Range: 0
- Lenovo/ThinkPad P16v Gen 1 BIOSv5Range: 0
- Lenovo/ThinkPad T14 Gen 5 BIOSv5Range: 0
- Lenovo/ThinkPad Z13 Gen 1 BIOSv5Range: 0
- Lenovo/ThinkPad Z13 Gen 2 BIOSv5Range: 0
- Lenovo/ThinkPad Z16 Gen 1 BIOSv5Range: 0
- Lenovo/ThinkPad Z16 Gen 2 BIOSv5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.