VendorsHuaweiharmonyosall versions
Vulnerabilities

Huawei Harmonyos

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1050CVEs
CVE-2026-28537
Double free vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2026-03-05 · Analyzed
5.5EPSS 0.001
CVE-2024-45448
Page table protection configuration vulnerability in the trusted firmware module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-09-04 · Modified
5.5EPSS 0.001
CVE-2025-46586
Permission control vulnerability in the contacts module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-05-06 · Analyzed
5.5EPSS 0.001
CVE-2024-45447
Access control vulnerability in the camera framework module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-09-04 · Analyzed
5.5EPSS 0.001
CVE-2025-54638
Issue of inconsistent read/write serialization in the ad module. Impact: Successful exploitation of this vulnerability may affect the availability of the ad service.
Published 2025-08-06 · Analyzed
5.5EPSS 0.001
CVE-2025-58283
Permission control vulnerability in the Wi-Fi module. Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-10-11 · Analyzed
5.5EPSS 0.001
CVE-2025-68966
Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2026-01-14 · Analyzed
5.5EPSS 0.001
CVE-2026-34857
UAF vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2026-04-13 · Analyzed
5.5EPSS 0.001
CVE-2025-54637
Out-of-bounds array access issue due to insufficient data verification in the kernel ambient light module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-08-06 · Analyzed
5.5EPSS 0.001
CVE-2025-58277
Permission verification bypass vulnerability in the Camera app. Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-10-11 · Analyzed
5.5EPSS 0.001
CVE-2025-58315
Permission control vulnerability in the Wi-Fi module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-11-28 · Analyzed
5.5EPSS 0.001
CVE-2025-53170
Null pointer dereference vulnerability in the application exit cause module Impact: Successful exploitation of this vulnerability may affect function stability.
Published 2025-07-07 · Analyzed
5.5EPSS 0.001
CVE-2025-66330
App lock verification bypass vulnerability in the file management app. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-12-08 · Analyzed
5.5EPSS 0.001
CVE-2025-58282
Permission control vulnerability in the camera module. Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-10-11 · Analyzed
5.5EPSS 0.001
CVE-2025-68965
Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2026-01-14 · Analyzed
5.5EPSS 0.001
CVE-2025-58285
Permission control vulnerability in the media module. Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-10-11 · Analyzed
5.5EPSS 0.001
CVE-2025-54636
Issue of buffer overflow caused by insufficient data verification in the kernel drop detection module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
5.5EPSS 0.001
CVE-2025-66329
Permission control vulnerability in the window management module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-12-08 · Modified
5.5EPSS 0.001
CVE-2025-58288
Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect availability.
Published 2025-10-11 · Analyzed
5.5EPSS 0.001
CVE-2025-58293
Vulnerability of improper exception handling in the print module. Successful exploitation of this vulnerability may affect availability.
Published 2025-10-11 · Analyzed
5.5EPSS 0.001
CVE-2025-58304
Permission control vulnerability in the file management module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-11-28 · Analyzed
5.5EPSS 0.001
CVE-2025-64311
Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-11-28 · Analyzed
5.5EPSS 0.001
CVE-2025-54645
Out-of-bounds array access issue due to insufficient data verification in the location service module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
5.5EPSS 0.001
CVE-2025-66323
Vulnerability of improper criterion security check in the card module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-12-08 · Analyzed
5.5EPSS 0.001
CVE-2025-58312
Permission control vulnerability in the App Lock module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-11-28 · Analyzed
5.5EPSS 0.001
CVE-2025-58279
Permission control vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-12-08 · Analyzed
5.5EPSS 0.001
CVE-2025-64313
Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-11-28 · Analyzed
5.5EPSS 0.001
CVE-2025-66334
Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-12-08 · Analyzed
5.5EPSS 0.001
CVE-2025-66331
Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-12-08 · Analyzed
5.5EPSS 0.001
CVE-2025-66333
Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-12-08 · Analyzed
5.5EPSS 0.001
CVE-2025-66332
Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-12-08 · Analyzed
5.5EPSS 0.001
CVE-2021-40001
The CaasKit module has a path traversal vulnerability. Successful exploitation of this vulnerability may cause the MeeTime application to be unavailable.
Published 2022-01-07 · Modified
5.3EPSS 0.008
CVE-2021-37013
There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause the availability of users is affected.
Published 2021-11-23 · Modified
5.3EPSS 0.007
CVE-2021-40009
There is an Out-of-bounds write vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerability may affect service integrity.
Published 2022-01-07 · Modified
5.3EPSS 0.007
CVE-2021-40003
HwPCAssistant has a path traversal vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-01-07 · Modified
5.3EPSS 0.006
CVE-2023-4565
Broadcast permission control vulnerability in the framework module. Successful exploitation of this vulnerability may cause the hotspot feature to be unavailable.
Published 2023-09-26 · Modified
5.3EPSS 0.006
CVE-2021-37114
There is an Out-of-bounds read vulnerability in Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2022-01-03 · Modified
5.3EPSS 0.005
CVE-2021-37093
There is a Improper Access Control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to attackers steal short messages.
Published 2021-12-08 · Modified
5.3EPSS 0.005
CVE-2021-37118
The HwNearbyMain module has a Improper Handling of Exceptional Conditions vulnerability.Successful exploitation of this vulnerability may lead to message leak.
Published 2022-01-03 · Modified
5.3EPSS 0.005
CVE-2021-39980
Telephony application has a Exposure of Sensitive Information to an Unauthorized Actor vulnerability.Successful exploitation of this vulnerability could lead to sensitive information disclosure.
Published 2022-01-03 · Modified
5.3EPSS 0.005
← Prev24 / 27Next →