Openatom / Openharmony
156 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2025-6969 | ability_ability_runtime an improper input validation vulnerability | MEDIUM | 5.5 | Mar 16, 2026 |
| CVE-2025-26474 | communication_ipc an improper input validation vulnerability | LOW | 3.3 | Mar 16, 2026 |
| CVE-2025-52458 | arkcompiler_ets_runtime has an out-of-bounds write vulnerability | HIGH | 7.8 | Mar 16, 2026 |
| CVE-2025-41432 | arkcompiler_ets_runtime has an out-of-bounds write vulnerability | HIGH | 7.8 | Mar 16, 2026 |
| CVE-2025-25277 | arkcompiler_ets_runtime has a type confusion vulnerability | HIGH | 7.0 | Mar 16, 2026 |
| CVE-2025-12736 | multimedia_audio_standard has an insecure storage of sensitive information vulnerability | MEDIUM | 6.5 | Mar 16, 2026 |
| CVE-2026-0639 | liteos_a has a missing release of memory vulnerability | MEDIUM | 5.5 | Mar 16, 2026 |
| CVE-2025-27562 | communication_dsoftbus has a missing release of memory vulnerability | MEDIUM | 5.5 | Aug 11, 2025 |
| CVE-2025-27128 | liteos_a has an UAF vulnerability | HIGH | 8.4 | Aug 11, 2025 |
| CVE-2025-25212 | pasteboard has an improper input vulnerability | MEDIUM | 5.5 | Aug 11, 2025 |
| CVE-2025-24844 | communication_dsoftbus has a missing release of memory vulnerability | MEDIUM | 5.5 | Aug 11, 2025 |
| CVE-2025-27536 | arkcompiler_ets_runtime has a type confusion vulnerability | MEDIUM | 5.5 | Aug 11, 2025 |
| CVE-2025-26690 | communication dsoftbus has a NULL pointer vulnerability | MEDIUM | 5.5 | Aug 11, 2025 |
| CVE-2025-24925 | applications_settings has a missing release of memory vulnerability | MEDIUM | 5.5 | Aug 11, 2025 |
| CVE-2025-24298 | liteos_a has an UAF vulnerability | HIGH | 8.4 | Aug 11, 2025 |
| CVE-2025-25278 | liteos_a has a race condition vulnerability | HIGH | 8.4 | Aug 11, 2025 |
| CVE-2025-27577 | liteos_a has a race condition vulnerability | HIGH | 8.4 | Aug 11, 2025 |
| CVE-2025-27247 | Pasteboard has an improper preservation of permissions vulnerability | MEDIUM | 5.5 | Jun 8, 2025 |
| CVE-2025-27242 | Ssecurity_component_manager has an improper input vulnerability | MEDIUM | 5.5 | Jun 8, 2025 |
| CVE-2025-27563 | security_access_token has an improper preservation of permissions vulnerability | MEDIUM | 5.5 | Jun 8, 2025 |
| CVE-2025-26693 | security_access_token has an improper preservation of permissions vulnerability | MEDIUM | 5.5 | Jun 8, 2025 |
| CVE-2025-26691 | telephony_call_manager has an improper preservation of permissions vulnerability | MEDIUM | 5.5 | Jun 8, 2025 |
| CVE-2025-27131 | kernel_liteos_m has an improper input vulnerability | MEDIUM | 6.1 | Jun 8, 2025 |
| CVE-2025-24493 | kernel_liteos_a has a race condition vulnerability | MEDIUM | 5.5 | Jun 8, 2025 |
| CVE-2025-25217 | arkui_ace_enginehas a NULL pointer dereference vulnerability | MEDIUM | 5.5 | Jun 8, 2025 |
Showing 1 to 25 of 156 CVEs