Low
CVE-2026-0639
in OpenHarmony v6.0 and prior versions allow a local attacker case DOS through missing release of memory.
Medium
CVE-2025-52458
in OpenHarmony v5.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through o…
Medium
CVE-2025-41432
in OpenHarmony v5.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through o…
Medium
CVE-2025-25277
in OpenHarmony v5.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through u…
Low
CVE-2025-26474
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information improper input. This vulnerability can…
Medium
CVE-2025-12736
in OpenHarmony v5.0.3 and prior versions allow a local attacker case sensitive information leak through use of uninitial…