AI description
CVE-2026-50661 is identified as a security feature bypass vulnerability impacting Windows BitLocker. This flaw involves a protection mechanism failure within BitLocker's device encryption, which could allow an attacker with physical access to a system to circumvent the encryption. Successful exploitation of this vulnerability would enable an unauthorized individual with physical access to bypass BitLocker Device Encryption and access data stored on the system drive. The vulnerability was publicly disclosed prior to the release of a patch, though no active exploitation has been confirmed.
- Description
- Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
- Source
- secure@microsoft.com
- NVD status
- Analyzed
- Products
- windows_10_1607, windows_10_1809, windows_10_21h2, windows_10_22h2, windows_11_24h2, windows_11_25h2, windows_11_26h1, windows_server_2016, windows_server_2019, windows_server_2022, windows_server_2025
CVSS 3.1
- Type
- Primary
- Base score
- 4.6
- Impact score
- 3.6
- Exploitability score
- 0.9
- Vector string
- CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Severity
- MEDIUM
- secure@microsoft.com
- CWE-693
- Hype score
- Not currently trending
Microsoft ships its biggest Patch Tuesday ever with 2 zero-days already exploited: AD FS (CVE-2026-56155) + SharePoint (CVE-2026-56164). Plus a 4th BitLocker bypass in 5 weeks (CVE-2026-50661). Patch now. https://t.co/qs2aI4iwIR https://t.co/opbzEJk06M #CyberSecurity http
@DIESEC_GmbH
16 Jul 2026
3 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🔎 V rámci červencového Patch Tuesday bylo opraveno rekordních 622 zranitelností. Dvě zero day chyby umožňující zvýšení oprávnění již byly aktivně zneužívány: ⚠️ CVE-2026-56164 v on-premises SharePoint Serveru ⚠️ CVE-2026-56155 v ADFS Třetí zero
@sec4good
16 Jul 2026
60 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes
Microsoft patches 3 zero-days in July 2026 Patch Tuesday — 2 already under attack 🚨 🔹 CVE-2026-56155: AD FS flaw grants admin privileges, exploited in the wild 🔹 CVE-2026-56164: SharePoint bug lets remote attackers elevate privileges 🔹 CVE-2026-50661: BitLocker byp
@techepages
15 Jul 2026
60 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🚨 New Windows BitLocker Zero-Day Patched Read the full analysis: https://t.co/BLB9J8cioQ Microsoft has fixed CVE-2026-50661, a publicly disclosed BitLocker Security Feature Bypass vulnerability that could allow attackers with physical access to bypass Windows disk encryption
@thecybersecguru
15 Jul 2026
168 Impressions
0 Retweets
1 Like
1 Bookmark
0 Replies
0 Quotes
Windowsのディスク暗号化機能BitLockerに、物理アクセス可能な攻撃者が暗号化を回避し、システムドライブ上のデータへアクセスできるゼロデイ脆弱性が見つかった。CVE-2026-50661として追跡され、2026年7月の更新
@yousukezan
15 Jul 2026
1574 Impressions
3 Retweets
8 Likes
5 Bookmarks
0 Replies
1 Quote
【脆弱性の嵐】マイクロソフトさん、月例更新で史上最多となる622件の脆弱性を修正。ゼロデイはADFSのCVE-2026-56155とSharePointのCVE-2026-56164の2件。他外部指摘は物理でのBitLocker回避CVE-2026-50661。 https://t.co/zJK92NBTQE
@__kokumoto
14 Jul 2026
1910 Impressions
4 Retweets
15 Likes
3 Bookmarks
1 Reply
1 Quote
🚨 𝗛𝗼𝗿𝗶𝘇𝗼𝗻 𝗔𝗹𝗲𝗿𝘁 – 𝗝𝘂𝗹𝘆 𝟮𝟬𝟮𝟲 𝗣𝗮𝘁𝗰𝗵 𝗧𝘂𝗲𝘀𝗱𝗮𝘆 This month brings 𝟯 𝗻𝗲𝘄 𝘇𝗲𝗿𝗼-𝗱𝗮𝘆𝘀 and an unusually high number of critical vulnerabilities - 𝟭
@horizon_secured
14 Jul 2026
720 Impressions
3 Retweets
11 Likes
3 Bookmarks
0 Replies
0 Quotes
🚨 Microsoft Patch Tuesday (July 2026): Microsoft has patched ~570 vulnerabilities, including critical RCE flaws and three publicly disclosed issues: CVE-2026-56164, CVE-2026-56155, and CVE-2026-50661. #CyberSecurity #Microsoft #PatchTuesday #CVE #ThreatWire
@ThreatWire_
14 Jul 2026
75 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:*",
"matchCriteriaId": "1A8DB50E-7571-4925-A293-CAB93ECD0EBF",
"versionEndExcluding": "10.0.14393.9339",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:*",
"matchCriteriaId": "A9DC4EC9-4E72-4CBC-BA0B-39CCC45DB8CE",
"versionEndExcluding": "10.0.14393.9339",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*",
"matchCriteriaId": "643F21D8-3A5B-477D-AFFC-2451DDC472CC",
"versionEndExcluding": "10.0.17763.9020",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:*",
"matchCriteriaId": "A68E51D8-C76C-4C9E-9CBD-C7D4D4BCDFAA",
"versionEndExcluding": "10.0.17763.9020",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:arm64:*",
"matchCriteriaId": "038B4A9C-95B9-440A-83A2-AF10BC24590C",
"versionEndExcluding": "10.0.19044.7548",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:x64:*",
"matchCriteriaId": "FCA35115-58F4-4015-9CA2-C33F45605AA6",
"versionEndExcluding": "10.0.19044.7548",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:x86:*",
"matchCriteriaId": "02C2F9D5-439A-45D2-98EB-08DB85673712",
"versionEndExcluding": "10.0.19044.7548",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:arm64:*",
"matchCriteriaId": "80F87C10-5D02-4EC9-B1A4-8FD7F6CFE758",
"versionEndExcluding": "10.0.19045.7548",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:x64:*",
"matchCriteriaId": "048B08D3-1959-47C0-A592-FCF0DCCD65A4",
"versionEndExcluding": "10.0.19045.7548",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:x86:*",
"matchCriteriaId": "A41562FD-04BC-4FC3-B847-D87D164A9C15",
"versionEndExcluding": "10.0.19045.7548",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:arm64:*",
"matchCriteriaId": "6D55C01A-5908-4CFC-BEB6-BBF3B6F0C5AF",
"versionEndExcluding": "10.0.26100.8875",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:x64:*",
"matchCriteriaId": "740B730D-AEC5-4735-A122-B1CF8B3C364C",
"versionEndExcluding": "10.0.26100.8875",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_11_25h2:*:*:*:*:*:*:arm64:*",
"matchCriteriaId": "E26E96B6-1469-46AE-9CB5-AB7A0372C398",
"versionEndExcluding": "10.0.26200.8875",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_11_25h2:*:*:*:*:*:*:x64:*",
"matchCriteriaId": "DDBCA9E4-7BFB-423A-B7A7-9CBF5625053D",
"versionEndExcluding": "10.0.26200.8875",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_11_26h1:*:*:*:*:*:*:arm64:*",
"matchCriteriaId": "8E90830B-0BD1-4D01-9C7D-0F0E1828A0F5",
"versionEndExcluding": "10.0.28000.2525",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_11_26h1:*:*:*:*:*:*:x64:*",
"matchCriteriaId": "D335CB65-70DC-4DB1-9519-AF9243EC2FDF",
"versionEndExcluding": "10.0.28000.2525",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*",
"matchCriteriaId": "34D1270A-7D50-46CC-87EE-0A4E25F9C800",
"versionEndExcluding": "10.0.14393.9339",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*",
"matchCriteriaId": "D0E1AB94-0B38-4BB7-94EB-988EA266D6D5",
"versionEndExcluding": "10.0.17763.9020",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*",
"matchCriteriaId": "9E9A0C18-3AD2-4E59-97AF-A2343E466929",
"versionEndExcluding": "10.0.20348.5386",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*",
"matchCriteriaId": "22BE2FE9-37B9-4FF2-B43A-60A3518E0F08",
"versionEndExcluding": "10.0.26100.33158",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]