CVE-2026-20938 | Microsoft Windows 11 23H2/11 24H2/11 25H2 Virtualization-Based Security untrusted pointer dereference
A vulnerability categorized as critical has been discovered in Microsoft Windows 11 23H2/11 24H2/11 25H2. Affected by this vulnerability is an unknown functionality of the component Virtualization-Based Security. The manipulation results in untrusted pointer dereference.
This vulnerability is cataloged as CVE-2026-20938. The attack must be initiated from a local position. There is no exploit available.
Applying a patch is advised to resolve this issue.