Aggregates CVE and security vulnerability intelligence across all OpenAtom Foundation-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.
Historical issues mainly involve vendor risk memory corruption, vendor risk buffer overflow, and vendor risk input validation and related problems; some flaws may lead to vendor impact application crash.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2025-27131 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through improper input. | [email protected] | 6.1 | 0.11% | 2025-06-08 | 2026-06-17 |
| CVE-2025-26693 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through get permission. | [email protected] | 3.3 | 0.06% | 2025-06-08 | 2026-06-17 |
| CVE-2025-26691 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through get permission. | [email protected] | 5.5 | 0.06% | 2025-06-08 | 2026-06-17 |
| CVE-2025-25217 | in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference. | [email protected] | 3.3 | 0.07% | 2025-06-08 | 2026-06-17 |
| CVE-2025-24493 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through race condition. | [email protected] | 5.5 | 0.09% | 2025-06-08 | 2026-06-17 |
| CVE-2025-23235 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through out-of-bounds read. | [email protected] | 3.3 | 0.07% | 2025-06-08 | 2026-06-17 |
| CVE-2025-21082 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause apps crash through type confusion. | [email protected] | 3.3 | 0.07% | 2025-06-08 | 2026-06-17 |
| CVE-2025-20063 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause apps crash through type confusion. | [email protected] | 3.3 | 0.07% | 2025-06-08 | 2026-06-17 |
| CVE-2025-27248 | in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference. | [email protected] | 3.3 | 0.07% | 2025-05-06 | 2026-06-17 |
| CVE-2025-27241 | in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference. | [email protected] | 3.3 | 0.07% | 2025-05-06 | 2026-06-17 |
| CVE-2025-27132 | in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write. This vulnerability can be exploited only in restricted scenarios. | [email protected] | 3.8 | 0.07% | 2025-05-06 | 2026-06-17 |
| CVE-2025-25218 | in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference. | [email protected] | 3.3 | 0.07% | 2025-05-06 | 2026-06-17 |
| CVE-2025-25052 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through buffer overflow. | [email protected] | 3.3 | 0.12% | 2025-05-06 | 2026-06-17 |
| CVE-2025-22886 | in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory. | [email protected] | 3.3 | 0.07% | 2025-05-06 | 2026-06-17 |
| CVE-2025-27534 | in OpenHarmony v5.0.2 and prior versions allow a local attacker case DOS through missing release of memory. | [email protected] | 3.3 | 0.07% | 2025-04-06 | 2026-06-17 |
| CVE-2025-25057 | in OpenHarmony v5.0.2 and prior versions allow a local attacker case DOS through missing release of memory. | [email protected] | 3.3 | 0.07% | 2025-04-06 | 2026-06-17 |
| CVE-2025-24304 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds write. | [email protected] | 3.3 | 0.07% | 2025-04-06 | 2026-06-17 |
| CVE-2025-22851 | in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through integer overflow. | [email protected] | 6.5 | 0.07% | 2025-04-06 | 2026-06-17 |
| CVE-2025-22842 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read. | [email protected] | 3.3 | 0.07% | 2025-04-06 | 2026-06-17 |
| CVE-2025-22452 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read. | [email protected] | 3.3 | 0.07% | 2025-04-06 | 2026-06-17 |