AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-20917

MEDIUM · CVSS 4 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

Certain Intel processors are vulnerable due to improper data forwarding during transient execution, which could lead to sensitive information disclosure. This vulnerability primarily affects systems with a hypervisor or kernel environment and requires a privileged user to exploit, making it a concern for organizations with high-security environments. System administrators and security teams should prioritize this issue to mitigate potential data exposure risks, especially in systems where local access is possible.

CVE
CVE-2026-20917
Severity
MEDIUM
CVSS
4
EPSS
0.11%

Original NVD Description

Exposure of sensitive information caused by incorrect data forwarding during transient execution for some Intel(R) Processors within Ring 0: Hypervisor and Kernel may allow information disclosure. System software adversary with a privileged user combined with a high complexity attack may enable data exposure. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (none) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (high), integrity (none) and availability (none) impacts.