3.7
CVE-2025-11143 - org.eclipse.jetty/jetty-http: org.eclipse.jetty: Security bypass due to differential URI parsing
The Jetty URI parser has some key differences to other common parsers when evaluating invalid or unusual URIs. Differential parsing of URIs in systems using multiple components may result in security by-pass. For example a component that enforces a black list may interpret the URIs differently from…
10
CVE-2026-21628 - Extension - astroidframe.work - Unauthenticated Remote Code Execution in Astroid Framework 2.0.0 - …
A improperly secured file management feature allows uploads of dangerous data types for unauthenticated users, leading to remote code execution.
7.3
CVE-2026-28542 - Permission bypass allowing availability disruption on Huawei devices
Permission bypass vulnerability in the system service framework. Impact: Successful exploitation of this vulnerability may affect availability.
7.1
CVE-2026-28548 - Email Application Verification Failure in Huawei EMUI/HarmonyOS Enables Data Exposure
Vulnerability of improper verification in the email application. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
4.7
CVE-2026-28551 - Race Condition in HarmonyOS Device Security Management Leads to Availability Impact
Race condition vulnerability in the device security management module. Impact: Successful exploitation of this vulnerability may affect availability.
6.6
CVE-2026-28549 - Race Condition in Permission Management Service Leading to Denial of Service
Race condition vulnerability in the permission management service. Impact: Successful exploitation of this vulnerability may affect availability.
6.8
CVE-2026-28547 - Uninitialized Pointer Access in HarmonyOS Scanning Module Leading to Availability Impact
Vulnerability of uninitialized pointer access in the scanning module. Impact: Successful exploitation of this vulnerability may affect availability.
5.9
CVE-2026-28546 - Buffer Overflow in HarmonyOS Scanning Module Causing Availability Issues
Buffer overflow vulnerability in the scanning module. Impact: Successful exploitation of this vulnerability may affect availability.
4.4
CVE-2026-28543 - Race Condition in HarmonyOS Diagnostics Module Causes Availability Issues
Race condition vulnerability in the maintenance and diagnostics module. Impact: Successful exploitation of this vulnerability may affect availability.
4
CVE-2026-28541 - Permission control flaw in HarmonyOS cellular_data module may affect device connectivity
Permission control vulnerability in the cellular_data module. Impact: Successful exploitation of this vulnerability may affect availability.