CVE-2026-8070: ASUS Armoury Crate

High severity, CVSS 7.3. EPSS: 0.1% chance of exploitation in the next 30 days.

Incorrect permission assignment for a critical resource in Armoury Crate allows a local user to bypass the driver’s validation mechanism, resulting in unauthorized read and write access to physical memory.Refer to the '  Security Update for Armoury Crate App   ' section on the ASUS Security Advisory for more information.

Affected products

  • ASUS Armoury Crate: up to and including 6.4.12

Published 2026-05-29. Last modified 2026-09-17.