Huawei
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in any Huawei product.
RSS Feeds for Huawei security vulnerabilities
Create a CVE RSS feed including security vulnerabilities found in Huawei products with stack.watch. Just hit watch, then grab your custom RSS feed url.
Products by Huawei Sorted by Most Security Vulnerabilities since 2018
By the Year
In 2026 there have been 34 vulnerabilities in Huawei with an average score of 6.4 out of ten. Last year, in 2025 Huawei had 189 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in Huawei in 2026 could surpass last years number. However, the average CVE base score of the vulnerabilities in 2026 is greater by 0.24.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 34 | 6.42 |
| 2025 | 189 | 6.18 |
| 2024 | 209 | 6.62 |
| 2023 | 249 | 7.49 |
| 2022 | 313 | 7.51 |
| 2021 | 255 | 7.33 |
| 2020 | 14 | 7.10 |
| 2019 | 12 | 6.93 |
| 2018 | 5 | 6.26 |
It may take a day or so for new Huawei vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Huawei Security Vulnerabilities
| CVE | Date | Vulnerability | Products |
|---|---|---|---|
| CVE-2026-24928 | Feb 06, 2026 |
Out-of-bounds write vulnerability in the file system moduleOut-of-bounds write vulnerability in the file system module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24927 | Feb 06, 2026 |
Out-of-bounds access vulnerability in the frequency modulation moduleOut-of-bounds access vulnerability in the frequency modulation module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24924 | Feb 06, 2026 |
Vulnerability of improper permission control in the print moduleVulnerability of improper permission control in the print module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24920 | Feb 06, 2026 |
Permission control vulnerability in the AMS modulePermission control vulnerability in the AMS module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24919 | Feb 06, 2026 |
Out-of-bounds write vulnerability in the DFX moduleOut-of-bounds write vulnerability in the DFX module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24917 | Feb 06, 2026 |
UAF vulnerability in the security moduleUAF vulnerability in the security module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24916 | Feb 06, 2026 |
Identity authentication bypass vulnerability in the window moduleIdentity authentication bypass vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24931 | Feb 06, 2026 |
Vulnerability of improper criterion security check in the card moduleVulnerability of improper criterion security check in the card module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24930 | Feb 06, 2026 |
UAF concurrency vulnerability in the graphics moduleUAF concurrency vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24929 | Feb 06, 2026 |
Out-of-bounds read vulnerability in the graphics moduleOut-of-bounds read vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24923 | Feb 06, 2026 |
Permission control vulnerability in the HDC modulePermission control vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2026-24922 | Feb 06, 2026 |
Buffer overflow vulnerability in the HDC moduleBuffer overflow vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24921 | Feb 06, 2026 |
Address read vulnerability in the HDC moduleAddress read vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. |
|
| CVE-2026-24918 | Feb 06, 2026 |
Address read vulnerability in the communication moduleAddress read vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24915 | Feb 06, 2026 |
Out-of-bounds read issue in the media subsystemOut-of-bounds read issue in the media subsystem. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. |
|
| CVE-2026-24914 | Feb 06, 2026 |
Type confusion vulnerability in the camera moduleType confusion vulnerability in the camera module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24926 | Feb 06, 2026 |
Out-of-bounds write vulnerability in the camera moduleOut-of-bounds write vulnerability in the camera module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2026-24925 | Feb 06, 2026 |
Heap-based buffer overflow vulnerability in the image moduleHeap-based buffer overflow vulnerability in the image module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68959 | Jan 14, 2026 |
Permission verification bypass vulnerability in the media library modulePermission verification bypass vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-68970 | Jan 14, 2026 |
Permission verification bypass vulnerability in the media library modulePermission verification bypass vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-68963 | Jan 14, 2026 |
Man-in-the-middle attack vulnerability in the Clone moduleMan-in-the-middle attack vulnerability in the Clone module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-68967 | Jan 14, 2026 |
Vulnerability of improper permission control in the print moduleVulnerability of improper permission control in the print module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-68966 | Jan 14, 2026 |
Permission control vulnerability in the Notepad modulePermission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-68965 | Jan 14, 2026 |
Permission control vulnerability in the Notepad modulePermission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-68964 | Jan 14, 2026 |
Data verification vulnerability in the HiView moduleData verification vulnerability in the HiView module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68969 | Jan 14, 2026 |
Multi-thread race condition vulnerability in the thermal management moduleMulti-thread race condition vulnerability in the thermal management module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68968 | Jan 14, 2026 |
Double free vulnerability in the multi-mode input moduleDouble free vulnerability in the multi-mode input module. Impact: Successful exploitation of this vulnerability may affect the input function. |
|
| CVE-2025-68962 | Jan 14, 2026 |
Multi-thread race condition vulnerability in the camera framework moduleMulti-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68961 | Jan 14, 2026 |
Multi-thread race condition vulnerability in the camera framework moduleMulti-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68960 | Jan 14, 2026 |
Multi-thread race condition vulnerability in the video framework moduleMulti-thread race condition vulnerability in the video framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68958 | Jan 14, 2026 |
Multi-thread race condition vulnerability in the card framework moduleMulti-thread race condition vulnerability in the card framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68957 | Jan 14, 2026 |
Multi-thread race condition vulnerability in the card framework moduleMulti-thread race condition vulnerability in the card framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68956 | Jan 14, 2026 |
Multi-thread race condition vulnerability in the card framework moduleMulti-thread race condition vulnerability in the card framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-68955 | Jan 14, 2026 |
Multi-thread race condition vulnerability in the card framework moduleMulti-thread race condition vulnerability in the card framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-66330 | Dec 08, 2025 |
File Manager App: App Lock Verification BypassApp lock verification bypass vulnerability in the file management app. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-66329 | Dec 08, 2025 |
Window Management Module Permission Control Vulnerability (CVE-2025-66329)Permission control vulnerability in the window management module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-66325 | Dec 08, 2025 |
Permission Control Vulnerability in Package ManagerPermission control vulnerability in the package management module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-58279 | Dec 08, 2025 |
Permission Control Flaw in Media Library Module (CVE-2025-58279)Permission control vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-66334 | Dec 08, 2025 |
MS Office DoS via Office Service (CVE-2025-66334)Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-66333 | Dec 08, 2025 |
CVE-2025-66333: DoS in Microsoft Office ServiceDenial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-66332 | Dec 08, 2025 |
Office Service DoS VulnerabilityDenial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-66331 | Dec 08, 2025 |
MS Office Service DoS via Office Service VulnerabilityDenial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-66328 | Dec 08, 2025 |
CVE-2025-66328: Race Condition in Network Mgt ModuleMulti-thread race condition vulnerability in the network management module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-66327 | Dec 08, 2025 |
Race Condition in Network Module Enables Confidentiality CompromiseRace condition vulnerability in the network module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
|
| CVE-2025-66326 | Dec 08, 2025 |
Race-Cond in Audio Mod (CVE-2025-66326)Race condition vulnerability in the audio module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-66324 | Dec 08, 2025 |
Input Verification Vulnerability in Compression/Decompression ModuleInput verification vulnerability in the compression and decompression module. Impact: Successful exploitation of this vulnerability may affect app data integrity. |
|
| CVE-2025-66323 | Dec 08, 2025 |
Improper Security Check in Card Module May Cause Availability ImpactVulnerability of improper criterion security check in the card module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-66322 | Dec 08, 2025 |
Android Camera Framework Race Condition CVE-2025-66322Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-66321 | Dec 08, 2025 |
Android Camera Framework Race Condition (CVE-2025-66321)Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|
| CVE-2025-66320 | Dec 08, 2025 |
Android Camera Framework Multithread Race Causing DoSMulti-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulnerability may affect availability. |
|