Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Lenovo — Vulnerabilities & Security Advisories 392

Browse all 392 CVE security advisories affecting Lenovo. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Lenovo operates as a global technology manufacturer, primarily producing personal computers, servers, and mobile devices for enterprise and consumer markets. Its software ecosystem, including pre-installed utilities and firmware, has historically exhibited vulnerabilities such as remote code execution, cross-site scripting, and privilege escalation flaws within management interfaces. These weaknesses often stem from complex supply chain integrations and legacy codebases embedded in hardware. While the company maintains standard security protocols, past incidents have highlighted risks associated with third-party components and default configurations in diagnostic tools. The current record of 359 Common Vulnerabilities and Exposures reflects the broad attack surface inherent in its diverse hardware portfolio. Continuous patching and rigorous code audits remain critical for mitigating these persistent threats across its extensive product line.

CVE ID Title CVSS Severity Published
CVE-2026-11813 Lenovo FileZ Client 权限许可和访问控制问题漏洞 — FileZ Client CWE-276 7.8 High 2026-09-10
CVE-2026-18994 Lenovo File Manager Application 权限许可和访问控制问题漏洞 — File Manager Application CWE-926 7.1 High 2026-09-10
CVE-2026-19136 Lenovo Tianxi AI Agent PC Application 命令注入漏洞 — Tianxi AI Agent PC Application CWE-78 7.8 High 2026-09-10
CVE-2026-63427 Lenovo Software Fix 授权问题漏洞 — Software Fix CWE-290 7.8 High 2026-09-10
CVE-2026-75940 Lenovo Health Application 信任管理问题漏洞 — Health Application CWE-798 9.1 Critical 2026-09-10
CVE-2026-14256 Lenovo ELAN TrackPoint driver 缓冲区错误漏洞 — E16 Gen 2 (Type 21M5, 21M6) Laptops (ThinkPad) ELAN TrackPoint Device Driver for Windows 11 (Version 23H2 or later) - ThinkPad CWE-125 4.7 Medium 2026-08-13
CVE-2026-15994 Lenovo Vantage 后置链接漏洞 — Commercial Vantage CWE-59 7.0 High 2026-08-13
CVE-2026-63423 Lenovo Accessories and Display Manager 加密问题漏洞 — Accessories and Display Manager CWE-321 7.8 High 2026-08-13
CVE-2026-63424 Lenovo Dock Manager 信任管理问题漏洞 — Dock Manager CWE-261 7.3 High 2026-08-13
CVE-2026-63425 Lenovo Dock Manager 权限许可和访问控制问题漏洞 — Dock Manager CWE-276 7.8 High 2026-08-13
CVE-2026-63426 Lenovo Dock Manager 后置链接漏洞 — Dock Manager CWE-59 7.1 High 2026-08-13
CVE-2026-12036 Lenovo Vantage 后置链接漏洞 — Vantage CWE-59 7.1 High 2026-08-13
CVE-2026-6387 Lenovo system update 授权问题漏洞 — System Update CWE-290 7.0 High 2026-08-13
CVE-2026-16793 Remote Command Injection via OS Profile Password in Lenovo XClarity Orchestrator — XClarity Orchestrator CWE-78 8.8 High 2026-08-04
CVE-2026-16792 Global TLS Certificate Validation Bypass in Lenovo XClarity Orchestrator — XClarity Orchestrator CWE-295 6.1 Medium 2026-08-04
CVE-2026-16791 Predictable Temporary File Symlink Vulnerability in Lenovo XClarity Essentials OneCLI — XClarity Essentials OneCLI CWE-377 3.9 Low 2026-08-04
CVE-2026-10590 Lenovo Yoga Pro 7 15IPH11 BIOS 安全漏洞 — Yoga Pro 7 15IPH11 BIOS 4.4 Medium 2026-07-16
CVE-2026-10589 Lenovo BIOS 缓冲区错误漏洞 — Yoga Pro 7 15IPH11 BIOS 6.0 Medium 2026-07-16
CVE-2026-10588 Lenovo Yoga Pro 7 15IPH11 BIOS 信息泄露漏洞 — Yoga Pro 7 15IPH11 BIOS 4.4 Medium 2026-07-16
CVE-2026-10587 Lenovo Yoga Pro 7 15IPH11 BIOS 缓冲区错误漏洞 — Yoga Pro 7 15IPH11 BIOS 6.0 Medium 2026-07-16
CVE-2026-14371 Lenovo XClarity Integrator for Microsoft Windows Admin Center 命令注入漏洞 — XClarity Integrator for Microsoft Windows Admin Center CWE-78 - - 2026-07-16
CVE-2026-13104 Lenovo app store 权限许可和访问控制问题漏洞 — App Store CWE-250 7.3 High 2026-07-16
CVE-2026-13103 Lenovo app store 路径遍历漏洞 — App Store CWE-22 7.3 High 2026-07-16
CVE-2026-9046 Lenovo Legion Zone 权限许可和访问控制问题漏洞 — Legion Zone CWE-277 7.0 High 2026-07-16
CVE-2026-6511 Lenovo Smart Connect 授权问题漏洞 — Smart Connect CWE-306 5.5 Medium 2026-07-16
CVE-2025-10238 Lenovo ThinkPad 缓冲区错误漏洞 — X13 Gen 6 (Type 21RK, 21RL) Laptops (ThinkPad) BIOS CWE-787 6.7 Medium 2026-06-10
CVE-2025-10237 Lenovo ThinkPad 加密问题漏洞 — X13 Gen 6 (Type 21RK, 21RL) Laptops (ThinkPad) BIOS CWE-327 6.7 Medium 2026-06-10
CVE-2026-6090 Lenovo Smart Connect 安全漏洞 — Smart Connect CWE-290 7.0 High 2026-06-10
CVE-2026-8637 Lenovo LanSchool Classic 代码问题漏洞 — LanSchool Classic CWE-427 7.8 High 2026-06-10
CVE-2026-9045 Lenovo Accessories and Display Manager for Enterprise 访问控制错误漏洞 — Accessories and Display Manager for Enterprise CWE-306 7.8 High 2026-06-10

This page lists every published CVE security advisory associated with Lenovo. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.