Home / CVEs we hold for Lenovo CVEs we hold for Lenovo Records whose assigning authority named Lenovo as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-9045 no title held Lenovo Accessories and Display Manager for Enterprise CVE-2026-16793 Remote Command Injection via OS Profile Password in Lenovo XClarity Orchestrator Lenovo XClarity Orchestrator CVE-2026-16792 Global TLS Certificate Validation Bypass in Lenovo XClarity Orchestrator Lenovo XClarity Orchestrator CVE-2026-16791 Predictable Temporary File Symlink Vulnerability in Lenovo XClarity Essentials OneCLI Lenovo XClarity Essentials OneCLI CVE-2026-14371 no title held Lenovo XClarity Integrator for Microsoft Windows Admin… CVE-2025-10238 no title held Lenovo P16v Gen 2 (Type 21KX, 21KY) Laptops (ThinkPad) BIOS CVE-2025-10237 no title held Lenovo P16v Gen 2 (Type 21KX, 21KY) Laptops (ThinkPad) BIOS CVE-2025-0886 no title held Lenovo Elliptic Virtual Lock Sensor for X13 Yoga Gen 4… CVE-2024-7756 no title held Lenovo L390 Yoga (type 20NT, 20NU) Laptops (ThinkPad) BIOS CVE-2024-5474 no title held Lenovo Dolby Vision Provisioning software CVE-2024-45105 no title held Lenovo VX7531 Certified Node (ThinkAgile) BIOS CVE-2024-3100 no title held Lenovo Yoga Slim 7 Pro-14ACH5 O Laptop (ideapad) BIOS 200 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.