CVE-2026-40144EPSS p2.3%

CVE-2026-40144CVE-2026-40144

Description

A memory-corruption vulnerability exists in a kernel-mode component of BeyondTrust Endpoint Privilege Management (Windows deployments) prior to version 26.1.2. Insufficient validation of input processed by the component may result in memory being accessed outside its intended bounds.

Scoring

EPSS0.13% probability of exploitation · percentile 2.3% · 2026-10-05T12:00:23Z
Last modified2026-08-18
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.