VendorsHuaweiharmonyosall versions
Vulnerabilities

Huawei Harmonyos

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1050CVEs
CVE-2024-56444
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-01-08 · Analyzed
7.5EPSS 0.003
CVE-2024-58109
Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.003
CVE-2024-58110
Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.003
CVE-2024-58108
Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.003
CVE-2024-58106
Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.003
CVE-2023-39392
Vulnerability of insecure signatures in the OsuLogin module. Successful exploitation of this vulnerability may cause OsuLogin to be maliciously modified and overwritten.
Published 2023-08-13 · Modified
7.5EPSS 0.002
CVE-2023-39393
Vulnerability of insecure signatures in the ServiceWifiResources module. Successful exploitation of this vulnerability may cause ServiceWifiResources to be maliciously modified and overwritten.
Published 2023-08-13 · Modified
7.5EPSS 0.002
CVE-2024-12602
Identity verification vulnerability in the ParamWatcher module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-02-06 · Analyzed
7.5EPSS 0.002
CVE-2024-54108
Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-12-12 · Modified
7.5EPSS 0.002
CVE-2024-54116
Out-of-bounds read vulnerability in the M3U8 module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2024-12-12 · Analyzed
7.5EPSS 0.002
CVE-2024-54115
Out-of-bounds read vulnerability in the DASH module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-12-12 · Analyzed
7.5EPSS 0.002
CVE-2024-57954
Permission verification vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-02-06 · Analyzed
7.5EPSS 0.002
CVE-2022-48621
Vulnerability of missing authentication for critical functions in the Wi-Fi module.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-02-18 · Modified
7.5EPSS 0.002
CVE-2024-54107
Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-12-12 · Modified
7.5EPSS 0.002
CVE-2025-54630
:Vulnerability of insufficient data length verification in the DFA module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
7.5EPSS 0.002
CVE-2023-52375
Permission control vulnerability in the WindowManagerServices module.Successful exploitation of this vulnerability may affect availability.
Published 2024-02-18 · Modified
7.5EPSS 0.002
CVE-2023-52955
Vulnerability of improper authentication in the ANS system service module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2025-54628
Vulnerability of incomplete verification information in the communication module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
7.5EPSS 0.002
CVE-2024-56437
Vulnerability of input parameters not being verified in the widget framework module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-54104
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-12-12 · Analyzed
7.5EPSS 0.002
CVE-2024-54119
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-12-12 · Analyzed
7.5EPSS 0.002
CVE-2024-56448
Vulnerability of improper access control in the home screen widget module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-58116
Buffer overflow vulnerability in the SVG parsing module of the ArkUI framework Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.002
CVE-2024-58115
Buffer overflow vulnerability in the SVG parsing module of the ArkUI framework Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.002
CVE-2024-42039
Access control vulnerability in the SystemUI module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-09-04 · Modified
7.5EPSS 0.002
CVE-2024-47294
Access permission verification vulnerability in the input method framework module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2024-09-27 · Analyzed
7.5EPSS 0.002
CVE-2024-54100
Vulnerability of improper access control in the secure input module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2024-12-12 · Analyzed
7.5EPSS 0.002
CVE-2024-9136
Access permission verification vulnerability in the App Multiplier module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-09-27 · Modified
7.5EPSS 0.002
CVE-2024-57956
Out-of-bounds read vulnerability in the interpreter string module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-02-06 · Analyzed
7.5EPSS 0.002
CVE-2024-56443
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-45441
Input verification vulnerability in the system service module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-09-04 · Analyzed
7.5EPSS 0.002
CVE-2024-56446
Vulnerability of variables not being initialized in the notification module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-54121
Startup control vulnerability in the ability module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-51523
Information management vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-11-05 · Analyzed
7.5EPSS 0.002
CVE-2024-57955
Arbitrary write vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-02-06 · Analyzed
7.5EPSS 0.002
CVE-2023-44098
Vulnerability of missing encryption in the card management module. Successful exploitation of this vulnerability may affect service confidentiality.
Published 2023-11-08 · Modified
7.5EPSS 0.002
CVE-2025-53167
Authentication vulnerability in the distributed collaboration framework module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-07-07 · Analyzed
7.5EPSS 0.002
CVE-2024-56438
Vulnerability of improper memory address protection in the HUKS module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-56435
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-56442
Vulnerability of native APIs not being implemented in the NFC service module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
← Prev16 / 27Next →