CVE-2026-8863: exploitation status and patch state

CVE-2026-8863 · CVSS 7.8 HIGH · EPSS <1% · patch available

Multiple Microsoft-sigend UEFI SHIM bootloaders are vulnerable to SecureBoot bypass. An attacker with administrative privileges or the ability to modify the boot process could use one of the vulnerable shim bootloaders to bypass Secure Boot protections and execute arbitrary code before the operating system loads. Specific UEFI DBX update is required to block these vulnerable boot loaders.

Is CVE-2026-8863 exploited?

Which products and versions are affected?

No affected package list recorded here yet.

Is there a patch?

What PlainSec published about CVE-2026-8863

Primary sources

What this record does not say

KEV and EPSS are re-checked daily. Record last updated 2026-08-11.