PT-2026-58487 · Microsoft · Windows 10+4

CVE-2026-50661

·

Published

2026-07-14

·

Updated

2026-07-23

CVSS v2.0

6.6

Medium

VectorAV:L/AC:L/Au:N/C:C/I:C/A:N
Name of the Vulnerable Software and Affected Versions Windows 10 (affected versions not specified) Windows 11 (affected versions not specified) Windows Server 2016 (affected versions not specified) Windows Server 2019 (affected versions not specified) Windows Server 2022 (affected versions not specified) Windows Server 2025 (affected versions not specified)
Description A protection mechanism failure in the BitLocker device encryption workflow allows an unauthorized attacker with physical access to a system to bypass security features. This flaw can be used to circumvent disk encryption and access sensitive data stored on the system drive.
Recommendations Deploy the July 2026 security updates for Windows 10, Windows 11, and Windows Server instances. Verify that BitLocker remains enabled and correctly configured after patching. Strengthen physical device security and review encryption and pre-boot authentication policies.

Fix

DoS

Protection Mechanism Failure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-09730
CVE-2026-50661

Affected Products

Bitlocker
Windows
Windows 10
Windows 11
Windows Server