VendorsHuaweiharmonyosall versions
Vulnerabilities

Huawei Harmonyos

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1050CVEs
CVE-2025-58307
UAF vulnerability in the screen recording framework module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-11-28 · Analyzed
6.4EPSS 0.001
CVE-2023-52364
Vulnerability of input parameters being not strictly verified in the RSMC module. Impact: Successful exploitation of this vulnerability may cause out-of-bounds write.
Published 2024-04-08 · Analyzed
6.3EPSS 0.003
CVE-2023-52363
Vulnerability of defects introduced in the design process in the Control Panel module.Successful exploitation of this vulnerability may cause app processes to be started by mistake.
Published 2024-02-18 · Modified
6.3EPSS 0.002
CVE-2024-56450
Buffer overflow vulnerability in the component driver module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-01-08 · Analyzed
6.3EPSS 0.001
CVE-2026-24923
Permission control vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2026-02-06 · Analyzed
6.3EPSS 0.001
CVE-2026-34862
Race condition vulnerability in the power consumption statistics module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2026-04-13 · Analyzed
6.3EPSS 0.001
CVE-2026-34861
Race condition vulnerability in the thermal management module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2026-04-13 · Analyzed
6.3EPSS 0.001
CVE-2023-52721
The WindowManager module has a vulnerability in permission control. Impact: Successful exploitation of this vulnerability may affect confidentiality.
Published 2024-05-11 · Analyzed
6.2EPSS 0.002
CVE-2024-32995
Denial of service (DoS) vulnerability in the AMS module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-05-11 · Analyzed
6.2EPSS 0.002
CVE-2024-32996
Privilege escalation vulnerability in the account module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-05-11 · Analyzed
6.2EPSS 0.002
CVE-2024-47292
Path traversal vulnerability in the Bluetooth module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-09-27 · Analyzed
6.2EPSS 0.001
CVE-2023-52358
Vulnerability of configuration defects in some APIs of the audio module.Successful exploitation of this vulnerability may affect availability.
Published 2024-02-18 · Analyzed
6.2EPSS 0.001
CVE-2023-52385
Out-of-bounds write vulnerability in the RSMC module. Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-04-08 · Analyzed
6.2EPSS 0.001
CVE-2024-42030
Access permission verification vulnerability in the content sharing pop-up module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-08-08 · Analyzed
6.2EPSS 0.001
CVE-2023-52543
Permission verification vulnerability in the system module. Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-04-08 · Analyzed
6.2EPSS 0.001
CVE-2024-51522
Vulnerability of improper device information processing in the device management module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2024-11-05 · Analyzed
6.2EPSS 0.001
CVE-2025-46591
Out-of-bounds data read vulnerability in the authorization module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-05-06 · Analyzed
6.2EPSS 0.001
CVE-2024-58252
Vulnerability of insufficient information protection in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-05-06 · Analyzed
6.2EPSS 0.001
CVE-2024-54101
Denial of service (DoS) vulnerability in the installation module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-12-12 · Analyzed
6.2EPSS 0.001
CVE-2024-51511
Vulnerability of parameter type not being verified in the WantAgent module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2024-11-05 · Analyzed
6.2EPSS 0.001
CVE-2024-51512
Vulnerability of parameter type not being verified in the WantAgent module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2024-11-05 · Analyzed
6.2EPSS 0.001
CVE-2023-7265
Permission verification vulnerability in the lock screen module Impact: Successful exploitation of this vulnerability may affect availability
Published 2024-08-08 · Analyzed
6.2EPSS 0.001
CVE-2024-51525
Permission control vulnerability in the clipboard module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-11-05 · Modified
6.2EPSS 0.001
CVE-2024-8298
Memory request vulnerability in the memory management module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-09-04 · Analyzed
6.2EPSS 0.001
CVE-2024-39670
Privilege escalation vulnerability in the account synchronisation module. Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-07-25 · Modified
6.2EPSS 0.001
CVE-2026-24920
Permission control vulnerability in the AMS module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2026-02-06 · Analyzed
6.2EPSS 0.001
CVE-2025-48907
Deserialization vulnerability in the IPC module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-06-06 · Analyzed
6.2EPSS 0.001
CVE-2025-54615
Vulnerability of insufficient information protection in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-08-06 · Analyzed
6.2EPSS 0.001
CVE-2024-58046
Permission management vulnerability in the lock screen module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-03-04 · Analyzed
6.2EPSS 0.001
CVE-2024-58050
Vulnerability of improper access permission in the HDC module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-03-04 · Analyzed
6.2EPSS 0.001
CVE-2025-58278
Identity authentication bypass vulnerability in the Gallery app. Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-10-11 · Analyzed
6.2EPSS 0.001
CVE-2025-46587
Permission control vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-05-06 · Analyzed
6.2EPSS 0.001
CVE-2024-51516
Permission control vulnerability in the ability module Impact: Successful exploitation of this vulnerability may cause features to function abnormally.
Published 2024-11-05 · Modified
6.2EPSS 0.001
CVE-2025-48904
Vulnerability that cards can call unauthorized APIs in the FRS process Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-06-06 · Analyzed
6.2EPSS 0.001
CVE-2025-68964
Data verification vulnerability in the HiView module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2026-01-14 · Analyzed
6.2EPSS 0.001
CVE-2025-54608
Vulnerability that allows setting screen rotation direction without permission verification in the screen management module. Impact: Successful exploitation of this vulnerability may cause device screen orientation to be arbitrarily set.
Published 2025-08-06 · Analyzed
6.2EPSS 0.001
CVE-2025-54614
Input verification vulnerability in the home screen module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
6.2EPSS 0.001
CVE-2025-53186
Vulnerability that allows third-party call apps to send broadcasts without verification in the audio framework module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-07-07 · Analyzed
6.2EPSS 0.001
CVE-2025-58305
Identity authentication bypass vulnerability in the Gallery app. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-11-28 · Analyzed
6.2EPSS 0.001
CVE-2025-68959
Permission verification bypass vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2026-01-14 · Analyzed
6.2EPSS 0.001
← Prev20 / 27Next →