πŸ” CVE Alert

CVE-2026-0421

MEDIUM 6.5
CVSS Score
6.5
EPSS Score
0.0%
EPSS Percentile
0th

A potential vulnerability was reported in the BIOS of L13 Gen 6, L13 Gen 6 2-in-1, L14 Gen 6, and L16 Gen 2 ThinkPads which could result in Secure Boot being disabled even when configured as β€œOn” in the BIOS setup menu. This issue only affects systems where Secure Boot is set to User Mode.

CWE CWE-252
Vendor lenovo
Product thinkpad l13 gen 6 bios
Published Jan 14, 2026
Last Updated Feb 26, 2026
Stay Ahead of the Next One

Get instant alerts for lenovo thinkpad l13 gen 6 bios

Be the first to know when new medium vulnerabilities affecting lenovo thinkpad l13 gen 6 bios are published β€” delivered to Slack, Telegram or Discord.

Get Free Alerts β†’ Free Β· No credit card Β· 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
Attack Vector
Local
Attack Complexity
Low
Privileges Required
High
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High

Affected Versions

Lenovo / ThinkPad L13 Gen 6 BIOS
0 < 1.10
Lenovo / ThinkPad L13 Gen 6 2 in 1 BIOS
0 < 1.10
Lenovo / ThinkPad L14 Gen 6 BIOS
0 < 1.06
Lenovo / ThinkPad L16 Gen 2 BIOS
0 < 1.06

References

NVD β†— CVE.org β†— EPSS Data β†—
support.lenovo.com: https://support.lenovo.com/us/en/product_security/LEN-210688