Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
CRITICAL 9.8
CVE-2026-22070
ColorOS Assistant has an unauthenticated start-download channel, leading to file path traversal.
Coloros Assistant
Mitigation only
HIGH 7.5
CVE-2024-1608
In OPPO Usercenter Credit SDK, there's a possible escalation of privilege due to loose permission check, This could lead to application internal info…
Usercenter Credit Software Development Kit
Mitigation only
CRITICAL 9.8
CVE-2023-26311
A remote code execution vulnerability in the webview component of OPPO Store app.
Oppo Store
No fix yet
CRITICAL 9.8
CVE-2023-26310
There is a command injection problem in the old version of the mobile phone backup app.
Coloros
No fix yet
CRITICAL 9.8
CVE-2021-23247
A command injection vulerability found in quick game engine allows arbitrary remote code in quick app. Allows remote attacke0rs to gain arbitrary cod…
Quick App
No fix yet
HIGH 7.5
CVE-2021-23246
In ACE2 ColorOS11, the attacker can obtain the foreground package name through permission promotion, resulting in user information disclosure.
Coloros
Mitigation only
HIGH 7.8
CVE-2021-23244
ColorOS pregrant dangerous permissions to apps which are listed in a whitelist xml named default-grant-permissions.But some apps in whitelist is not …
Coloros
Mitigation only
MEDIUM 5.5
CVE-2020-11832
In functions charging_limit_current_write and charging_limit_time_write in /SM8250_Q_Master/android/vendor/oppo_charger/oppo/oppo_charger.c have not …
Reno3 Pro Firmware
No fix yet
MEDIUM 5.5
CVE-2020-11833
In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/charger_ic/oppo_mp2650.c, the function mp2650_data_log_write in mp2650_data_log_write does not c…
Reno3 Pro Firmware
No fix yet
MEDIUM 5.5
CVE-2020-11834
In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/oppo_vooc.c, the function proc_fastchg_fw_update_write in proc_fastchg_fw_update_write does not …
Reno3 Pro Firmware
No fix yet
MEDIUM 5.5
CVE-2020-11835
In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/charger_ic/oppo_da9313.c, failure to check the parameter buf in the function proc_work_mode_writ…
Reno3 Pro Firmware
No fix yet
CRITICAL 9.8
CVE-2020-11829
Dynamic loading of services in the backup and restore SDK leads to elevated privileges, affected product is com.coloros.codebook V2.0.0_5493e40_20072…
Coloros
Mitigation only
CRITICAL 9.8
CVE-2020-11830
QualityProtect has a vulnerability to execute arbitrary system commands, affected product is com.oppo.qualityprotect V2.0.
Qualityprotect
Mitigation only
CRITICAL 9.8
CVE-2020-11831
OvoiceManager has system permission to write vulnerability reports for arbitrary files, affected product is com.oppo.ovoicemanager V2.0.1.
Ovoicemanager
Mitigation only
HIGH 7.5
CVE-2020-11828
In ColorOS (oppo mobile phone operating system, based on AOSP frameworks/native code position/services/surfaceflinger surfaceflinger.CPP), RGB is def…
Coloros
Mitigation only
HIGH 7.8
CVE-2018-14996
The Oppo F5 Android device with a build fingerprint of OPPO/CPH1723/CPH1723:7.1.1/N6F26Q/1513597833:user/release-keys contains a pre-installed platfo…
F5 Firmware
Mitigation only