Escalation of Privilege in Intel Neural Compressor Software
CVE-2026-20913

4.8MEDIUM

Key Information:

Vendor

Intel

Vendor
CVE Published:
11 August 2026

What is CVE-2026-20913?

An improper input validation vulnerability exists in Intel Neural Compressor software prior to version v3.7. This flaw may allow an authenticated attacker with unprivileged software access to escalate privileges. Successful exploitation could enable the attacker to gain unauthorized access to sensitive functions and data, though it typically requires local access and minimal complexity. The attack does not necessitate user interaction and exploits specific weaknesses in the application's validation mechanisms.

Affected Version(s)

Intel(R) Neural Compressor software before version v3.7

References

CVSS V4

Score:
4.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.