๐Ÿ” CVE Alert

CVE-2026-6726

UNKNOWN 0.0

An information leakage vulnerability in the TCG TPM 2.0 reference code.

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

An information leakage vulnerability was reported in the TCG TPM 2.0 reference code that could allow a local attacker with elevated privileges to obtain a credential from a TPM-aware CA for a falsified TPM key (such as an Attestation Key, DevID Key or TLS authentication key) and falsify other TPM 2.0 attestations with this key. See also TCG VRT0010.

Vendor trusted computing group
Product tpm2.0
Published Aug 11, 2026
Last Updated Aug 11, 2026
Stay Ahead of the Next One

Get instant alerts for trusted computing group tpm2.0

Be the first to know when new unknown vulnerabilities affecting trusted computing group tpm2.0 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Trusted Computing Group / TPM2.0
0 โ‰ค v184

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
trustedcomputinggroup.org: https://trustedcomputinggroup.org/resource/errata-for-tpm-library-specification-2-0/ trustedcomputinggroup.org: https://trustedcomputinggroup.org/wp-content/uploads/VRT0010-Advisory_Final-1.pdf trustedcomputinggroup.org: https://trustedcomputinggroup.org/wp-content/uploads/Extended-vrt0010-11-guidance_V1.pdf