CVE-2026-8070: ASUS Armoury Crate
High severity, CVSS 7.3. EPSS: 0.1% chance of exploitation in the next 30 days.
Incorrect permission assignment for a critical resource in Armoury Crate allows a local user to bypass the driver’s validation mechanism, resulting in unauthorized read and write access to physical memory.Refer to the ' Security Update for Armoury Crate App ' section on the ASUS Security Advisory for more information.
Affected products
- ASUS Armoury Crate: up to and including 6.4.12
Published 2026-05-29. Last modified 2026-09-17.