Huawei
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in any Huawei product.
RSS Feeds for Huawei security vulnerabilities
Create a CVE RSS feed including security vulnerabilities found in Huawei products with stack.watch. Just hit watch, then grab your custom RSS feed url.
Products by Huawei Sorted by Most Security Vulnerabilities since 2018
By the Year
In 2026 there have been 52 vulnerabilities in Huawei with an average score of 6.2 out of ten. Last year, in 2025 Huawei had 189 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in Huawei in 2026 could surpass last years number. However, the average CVE base score of the vulnerabilities in 2026 is greater by 0.01.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 52 | 6.19 |
| 2025 | 189 | 6.18 |
| 2024 | 209 | 6.62 |
| 2023 | 249 | 7.49 |
| 2022 | 313 | 7.51 |
| 2021 | 255 | 7.35 |
| 2020 | 39 | 7.10 |
| 2019 | 35 | 6.91 |
| 2018 | 5 | 0.00 |
It may take a day or so for new Huawei vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Huawei Security Vulnerabilities
| CVE | Date | Vulnerability | Products |
|---|---|---|---|
| CVE-2026-28542 | Mar 05, 2026 |
Huawei HarmonyOS SysService Framework Permission BypassPermission bypass vulnerability in the system service framework. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28548 | Mar 05, 2026 |
Huawei Email App Improper Verification may Expose Service ConfidentialVulnerability of improper verification in the email application. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-28551 | Mar 05, 2026 |
Huawei Device Security Mgmt Module Race ConditionRace condition vulnerability in the device security management module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28549 | Mar 05, 2026 |
Race condition in Huawei permission management service (CVE-2026-28549)Race condition vulnerability in the permission management service. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28547 | Mar 05, 2026 |
Uninitialized Pointer Access in Huawei Scanning Module Causing DoSVulnerability of uninitialized pointer access in the scanning module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28546 | Mar 05, 2026 |
Huawei Scanning Module Buffer Overflow (CVE-2026-28546)Buffer overflow vulnerability in the scanning module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28543 | Mar 05, 2026 |
Huawei MaintnDiag Module Race Condition Affects AvailabilityRace condition vulnerability in the maintenance and diagnostics module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28541 | Mar 05, 2026 |
Huawei HarmonyOS Cellular_Data Permission Issue (CVE-2026-28541)Permission control vulnerability in the cellular_data module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28540 | Mar 05, 2026 |
Huawei Bluetooth OOB Char Read CVE-2026-28540Out-of-bounds character read vulnerability in Bluetooth. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-28539 | Mar 05, 2026 |
Huawei CVE-2026-28539: Data Processing Vulnerability in Cert Management ModData processing vulnerability in the certificate management module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-28538 | Mar 05, 2026 |
Huawei CertMgr Path Traversal VulnerabilityPath traversal vulnerability in the certificate management module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-66319 | Mar 05, 2026 |
Huawei Cloud Resource Scheduler Permission Control FlawPermission control vulnerability in the resource scheduling module. Impact: Successful exploitation of this vulnerability may affect service integrity. |
|
| CVE-2026-28552 | Mar 05, 2026 |
Huawei IMS Module OOB Write Availability ImpactOut-of-bounds write vulnerability in the IMS module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28550 | Mar 05, 2026 |
Race Condition in Huawei Security Control ModuleRace condition vulnerability in the security control module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28545 | Mar 05, 2026 |
Race Condition in Huawei Printing Module Causing DoSRace condition vulnerability in the printing module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28544 | Mar 05, 2026 |
Huawei Printing Module Race Condition (CVE-2026-28544)Race condition vulnerability in the printing module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28537 | Mar 05, 2026 |
Huawei HarmonyOS Double-free in Window ModuleDouble free vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28536 | Mar 05, 2026 |
Authentication Bypass in Huawei Device Auth ModuleAuthentication bypass vulnerability in the device authentication module. Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality. |
|
| CVE-2026-24928 | Feb 06, 2026 |
OOB Write in File System Module CVE-2026-24928Out-of-bounds write vulnerability in the file system module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24927 | Feb 06, 2026 |
CVE-2026-24927: OOB Access in FM Mod Module Availability RiskOut-of-bounds access vulnerability in the frequency modulation module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24924 | Feb 06, 2026 |
Improper Permission Control in Print Module Exposes Service ConfidentialityVulnerability of improper permission control in the print module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24920 | Feb 06, 2026 |
Permission Control Vulnerability in AMS ModulePermission control vulnerability in the AMS module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24919 | Feb 06, 2026 |
DFX Module OOB Write VulnerabilityOut-of-bounds write vulnerability in the DFX module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24917 | Feb 06, 2026 |
UAF in Security Module via CVE-2026-24917UAF vulnerability in the security module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24916 | Feb 06, 2026 |
CVE-2026-24916 Auth Bypass in Window ModuleIdentity authentication bypass vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24931 | Feb 06, 2026 |
Card Module Improper Security Check CVE-2026-24931Vulnerability of improper criterion security check in the card module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24930 | Feb 06, 2026 |
UAF Concurrency Vulnerability in Graphics ModuleUAF concurrency vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24929 | Feb 06, 2026 |
OOB read in graphics module leads to potential DoSOut-of-bounds read vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24923 | Feb 06, 2026 |
HDC module permission control flaw compromises confidentialityPermission control vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24922 | Feb 06, 2026 |
Buffer Overflow in HDC Module (CVE-2026-24922)Buffer overflow vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24921 | Feb 06, 2026 |
Addr Read CVE-2026-24921 in HDC Mod Compromises Avail & ConfAddress read vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. |
|
| CVE-2026-24918 | Feb 06, 2026 |
AR CVE-2026-24918: Address Read Vulnerability in Comm ModuleAddress read vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24915 | Feb 06, 2026 |
CVE-2026-24915: OOB read in Linux kernel media subsystemOut-of-bounds read issue in the media subsystem. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. |
|
| CVE-2026-24914 | Feb 06, 2026 |
Android Camera Module Type Confusion DoS VulnerabilityType confusion vulnerability in the camera module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24926 | Feb 06, 2026 |
CVE-2026-24926: Camera Module OOB Write (Availability Impact)Out-of-bounds write vulnerability in the camera module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24925 | Feb 06, 2026 |
Image Module Heap-Based Buffer Overflow (CVE-2026-24925)Heap-based buffer overflow vulnerability in the image module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68959 | Jan 14, 2026 |
Huawei MediaLib: Permission Bypass in Media Library ModulePermission verification bypass vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-68970 | Jan 14, 2026 |
Huawei Media Library Module Permission Bypass (CVE-2025-68970)Permission verification bypass vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-68963 | Jan 14, 2026 |
MI-M Attack on Huawei Clone ModuleMan-in-the-middle attack vulnerability in the Clone module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-68967 | Jan 14, 2026 |
Huawei Print Module Improper Permission Control VulnerabilityVulnerability of improper permission control in the print module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-68966 | Jan 14, 2026 |
Huawei Notepad Module Permission Control FlawPermission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-68965 | Jan 14, 2026 |
Huawei Notepad Permission Control Flaw Exposes Service ConfidentialityPermission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-68964 | Jan 14, 2026 |
Huawei HiView module: Data verification flaw causing DoSData verification vulnerability in the HiView module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68969 | Jan 14, 2026 |
Huawei Thermal Mgmt Module Race Condition (CVE-2025-68969)Multi-thread race condition vulnerability in the thermal management module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68968 | Jan 14, 2026 |
Huawei Input Module Double-Free VulnerabilityDouble free vulnerability in the multi-mode input module. Impact: Successful exploitation of this vulnerability may affect the input function. |
|
| CVE-2025-68962 | Jan 14, 2026 |
Huawei Android Camera Frmwk Thread RACE: Availability ImpactMulti-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68961 | Jan 14, 2026 |
Huawei Camera Framework Thread Race Condition (Availability)Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68960 | Jan 14, 2026 |
Huawei Video Framework RACE causes availability lossMulti-thread race condition vulnerability in the video framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68958 | Jan 14, 2026 |
CVE-2025-68958: Multi-thread Race Condition in Huawei Card FrameworkMulti-thread race condition vulnerability in the card framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68957 | Jan 14, 2026 |
Huawei Card Framework Multithread Race ConditionMulti-thread race condition vulnerability in the card framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|