Huawei
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in any Huawei product.
RSS Feeds for Huawei security vulnerabilities
Create a CVE RSS feed including security vulnerabilities found in Huawei products with stack.watch. Just hit watch, then grab your custom RSS feed url.
Products by Huawei Sorted by Most Security Vulnerabilities since 2018
By the Year
In 2026 there have been 72 vulnerabilities in Huawei with an average score of 6.0 out of ten. Last year, in 2025 Huawei had 189 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in Huawei in 2026 could surpass last years number. Last year, the average CVE base score was greater by 0.22
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 72 | 5.96 |
| 2025 | 189 | 6.18 |
| 2024 | 209 | 6.62 |
| 2023 | 249 | 7.49 |
| 2022 | 313 | 7.51 |
| 2021 | 255 | 7.35 |
| 2020 | 39 | 7.10 |
| 2019 | 35 | 6.91 |
| 2018 | 5 | 0.00 |
It may take a day or so for new Huawei vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Huawei Security Vulnerabilities
| CVE | Date | Vulnerability | Products |
|---|---|---|---|
| CVE-2026-34866 | Apr 13, 2026 |
Huawei OOB Write in WEB Module (CVE-2026-34866)Out-of-bounds write vulnerability in the WEB module.Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. |
|
| CVE-2026-34865 | Apr 13, 2026 |
Huawei WEB Module OOB Write CVE-2026-34865Out-of-bounds write vulnerability in the WEB module.Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. |
|
| CVE-2026-34864 | Apr 13, 2026 |
Boundary-UNL Vulnerability in Huawei App Read ModuleBoundary-unlimited vulnerability in the application read module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-34863 | Apr 13, 2026 |
Huawei FS OOB Write, Availability ImpactOut-of-bounds write vulnerability in the file system. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-34862 | Apr 13, 2026 |
Race Condition in Huawei Power Consumption Stats ModuleRace condition vulnerability in the power consumption statistics module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-34861 | Apr 13, 2026 |
Huawei Thermal Management Module Race Condition Causing DoSRace condition vulnerability in the thermal management module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-34859 | Apr 13, 2026 |
Huawei Kernel Module UAF (CVE-2026-34859)UAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. |
|
| CVE-2026-34858 | Apr 13, 2026 |
Huawei UAF in Communication Module (CVE-2026-34858)UAF vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-34857 | Apr 13, 2026 |
Huawei UAF in Comm ModuleUAF vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-34855 | Apr 13, 2026 |
OOB Write in Huawei Kernel Module Enables DoS & Data LeakOut-of-bounds write vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. |
|
| CVE-2026-34854 | Apr 13, 2026 |
Huawei kernel module UAF vulnerabilityUAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. |
|
| CVE-2026-34849 | Apr 13, 2026 |
Huawei Screen Manager UAF Causing Availability ImpactUAF vulnerability in the screen management module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-34856 | Apr 13, 2026 |
Use-After-Free in Huawei Communication ModuleUAF vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-34853 | Apr 13, 2026 |
Huawei LBS Perm Bypass (CVE-2026-34853)Permission bypass vulnerability in the LBS module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28553 | Apr 13, 2026 |
Improper Permission Control in Huawei Theme Setting ModuleVulnerability of improper permission control in the theme setting module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-34867 | Apr 13, 2026 |
Huawei EMUI Multi-Mode Input System Double-Free VulnerabilityDouble free vulnerability in the multi-mode input system. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-34860 | Apr 13, 2026 |
Access Control Bypass in Huawei Memo ModuleAccess control vulnerability in the memo module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. |
|
| CVE-2026-34852 | Apr 13, 2026 |
Stack overflow in Huawei MediaPlatform Component leads to DoSStack overflow vulnerability in the media platform. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-34851 | Apr 13, 2026 |
Huawei Event Notification Module Race Condition (CVE-2026-34851)Race condition vulnerability in the event notification module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-34850 | Apr 13, 2026 |
Race Condition in Huawei Notification Service (CVE-2026-34850)Race condition vulnerability in the notification service. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28542 | Mar 05, 2026 |
Huawei HarmonyOS SysService Framework Permission BypassPermission bypass vulnerability in the system service framework. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28548 | Mar 05, 2026 |
Huawei Email App Improper Verification may Expose Service ConfidentialVulnerability of improper verification in the email application. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-28551 | Mar 05, 2026 |
Huawei Device Security Mgmt Module Race ConditionRace condition vulnerability in the device security management module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28549 | Mar 05, 2026 |
Race condition in Huawei permission management service (CVE-2026-28549)Race condition vulnerability in the permission management service. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28547 | Mar 05, 2026 |
Uninitialized Pointer Access in Huawei Scanning Module Causing DoSVulnerability of uninitialized pointer access in the scanning module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28546 | Mar 05, 2026 |
Huawei Scanning Module Buffer Overflow (CVE-2026-28546)Buffer overflow vulnerability in the scanning module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28543 | Mar 05, 2026 |
Huawei MaintnDiag Module Race Condition Affects AvailabilityRace condition vulnerability in the maintenance and diagnostics module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28541 | Mar 05, 2026 |
Huawei HarmonyOS Cellular_Data Permission Issue (CVE-2026-28541)Permission control vulnerability in the cellular_data module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28540 | Mar 05, 2026 |
Huawei Bluetooth OOB Char Read CVE-2026-28540Out-of-bounds character read vulnerability in Bluetooth. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-28539 | Mar 05, 2026 |
Huawei CVE-2026-28539: Data Processing Vulnerability in Cert Management ModData processing vulnerability in the certificate management module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-28538 | Mar 05, 2026 |
Huawei CertMgr Path Traversal VulnerabilityPath traversal vulnerability in the certificate management module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-66319 | Mar 05, 2026 |
Huawei Cloud Resource Scheduler Permission Control FlawPermission control vulnerability in the resource scheduling module. Impact: Successful exploitation of this vulnerability may affect service integrity. |
|
| CVE-2026-28552 | Mar 05, 2026 |
Huawei IMS Module OOB Write Availability ImpactOut-of-bounds write vulnerability in the IMS module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28550 | Mar 05, 2026 |
Race Condition in Huawei Security Control ModuleRace condition vulnerability in the security control module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28545 | Mar 05, 2026 |
Race Condition in Huawei Printing Module Causing DoSRace condition vulnerability in the printing module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28544 | Mar 05, 2026 |
Huawei Printing Module Race Condition (CVE-2026-28544)Race condition vulnerability in the printing module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28537 | Mar 05, 2026 |
Huawei HarmonyOS Double-free in Window ModuleDouble free vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-28536 | Mar 05, 2026 |
Authentication Bypass in Huawei Device Auth ModuleAuthentication bypass vulnerability in the device authentication module. Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality. |
|
| CVE-2026-24928 | Feb 06, 2026 |
OOB Write in File System Module CVE-2026-24928Out-of-bounds write vulnerability in the file system module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24927 | Feb 06, 2026 |
CVE-2026-24927: OOB Access in FM Mod Module Availability RiskOut-of-bounds access vulnerability in the frequency modulation module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24924 | Feb 06, 2026 |
Improper Permission Control in Print Module Exposes Service ConfidentialityVulnerability of improper permission control in the print module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24920 | Feb 06, 2026 |
Permission Control Vulnerability in AMS ModulePermission control vulnerability in the AMS module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24919 | Feb 06, 2026 |
DFX Module OOB Write VulnerabilityOut-of-bounds write vulnerability in the DFX module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24917 | Feb 06, 2026 |
UAF in Security Module via CVE-2026-24917UAF vulnerability in the security module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24916 | Feb 06, 2026 |
CVE-2026-24916 Auth Bypass in Window ModuleIdentity authentication bypass vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24931 | Feb 06, 2026 |
Card Module Improper Security Check CVE-2026-24931Vulnerability of improper criterion security check in the card module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24930 | Feb 06, 2026 |
UAF Concurrency Vulnerability in Graphics ModuleUAF concurrency vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24929 | Feb 06, 2026 |
OOB read in graphics module leads to potential DoSOut-of-bounds read vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24923 | Feb 06, 2026 |
HDC module permission control flaw compromises confidentialityPermission control vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24922 | Feb 06, 2026 |
Buffer Overflow in HDC Module (CVE-2026-24922)Buffer overflow vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect availability. |
|