Vulnerability index

Browse CVEs

19 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Empirbus Wireless Display Unit Firmware CRITICAL 9.3
CVE-2025-27851

The locally served web site on the Garmin WDU (v1 1.4.6 and v2 5.0) allows a cross-site origin WebSocket hijacking attack. Among other uses, the WDU …

Mitigation only
Fix from $2,300 2026-05-13
Empirbus Wireless Display Unit Firmware HIGH 7.5
CVE-2025-27850

The locally served web site on the Garmin WDU (v1 1.4.6 and v2 5.0) allows a symlink attack. If a malicious graphics package containing symlinks is u…

Mitigation only
Fix from $1,950 2026-05-13
Empirbus Wireless Display Unit Firmware HIGH 7.3
CVE-2025-27853

The locally served web site on the Garmin WDU (v1 1.4.6 and v2 5.0) allows its authentication to be bypassed. The WDU web site only performs authenti…

Mitigation only
Fix from $1,950 2026-05-13
Empirbus Wireless Display Unit Firmware MEDIUM 5.0
CVE-2025-27852

The locally served web site on the Garmin WDU (v1 1.4.6 and v2 5.0) allows a reflected cross site scripting (XSS) attack. This allows an attacker on …

Mitigation only
Fix from $1,600 2026-05-13
Connect Iq CRITICAL 9.8
CVE-2023-23298

The `Toybox.Graphics.BufferedBitmap.initialize` API method in CIQ API version 2.3.0 through 4.1.7 does not validate its parameters, which can result …

Fix: after 4.1.7
Fix from $2,300 2023-05-23
Connect Iq CRITICAL 9.8
CVE-2023-23300

The `Toybox.Cryptography.Cipher.initialize` API method in CIQ API version 3.0.0 through 4.1.7 does not validate its parameters, which can result in b…

Fix: after 4.1.7
Fix from $2,300 2023-05-23
Connect Iq CRITICAL 9.8
CVE-2023-23301

The `news` MonkeyC operation code in CIQ API version 1.0.0 through 4.1.7 fails to check that string resources are not extending past the end of the e…

Fix: after 4.1.7
Fix from $2,300 2023-05-23
Connect Iq CRITICAL 9.8
CVE-2023-23302

The `Toybox.GenericChannel.setDeviceConfig` API method in CIQ API version 1.2.0 through 4.1.7 does not validate its parameter, which can result in bu…

Fix: after 4.1.7
Fix from $2,300 2023-05-23
Connect Iq CRITICAL 9.8
CVE-2023-23303

The `Toybox.Ant.GenericChannel.enableEncryption` API method in CIQ API version 3.2.0 through 4.1.7 does not validate its parameter, which can result …

Fix: after 4.1.7
Fix from $2,300 2023-05-23
Connect Iq CRITICAL 9.8
CVE-2023-23305

The GarminOS TVM component in CIQ API version 1.0.0 through 4.1.7 is vulnerable to various buffer overflows when loading binary resources. A maliciou…

Fix: after 4.1.7
Fix from $2,300 2023-05-23
Connect Iq CRITICAL 9.8
CVE-2023-23306

The `Toybox.Ant.BurstPayload.add` API method in CIQ API version 2.2.0 through 4.1.7 suffers from a type confusion vulnreability, which can result in …

Fix: after 4.1.7
Fix from $2,300 2023-05-23
Connect Iq CRITICAL 9.1
CVE-2023-23304

The GarminOS TVM component in CIQ API version 2.1.0 through 4.1.7 allows applications with a specially crafted head section to use the `Toybox.Sensor…

Fix: after 4.1.7
Fix from $2,300 2023-05-23
Connect Iq HIGH 7.5
CVE-2023-23299

The permission system implemented and enforced by the GarminOS TVM component in CIQ API version 1.0.0 through 4.1.7 can be bypassed entirely. A malic…

Fix: after 4.1.7
Fix from $1,950 2023-05-23
Connect HIGH 7.5
CVE-2022-46081

In Garmin Connect 4.61, terminating a LiveTrack session wouldn't prevent the LiveTrack API from continued exposure of private personal information. N…

No fix yet
Fix from $1,950 2023-01-04
Forerunner 235 Firmware CRITICAL 9.9
CVE-2020-27483

Garmin Forerunner 235 before 8.20 is affected by: Array index error. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerabil…

Fix: 8.20+
Fix from $2,300 2020-11-16
Forerunner 235 Firmware CRITICAL 9.9
CVE-2020-27484

Garmin Forerunner 235 before 8.20 is affected by: Integer Overflow. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerabili…

Fix: 8.20+
Fix from $2,300 2020-11-16
Forerunner 235 Firmware CRITICAL 9.9
CVE-2020-27485

Garmin Forerunner 235 before 8.20 is affected by: Array index error. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerabil…

Fix: 8.20+
Fix from $2,300 2020-11-16
Forerunner 235 Firmware CRITICAL 9.9
CVE-2020-27486

Garmin Forerunner 235 before 8.20 is affected by: Buffer Overflow. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerabilit…

Fix: 8.20+
Fix from $2,300 2020-11-16
Garmin Communicator Plugin HIGH 9.3
CVE-2009-0194

The domain-locking implementation in the GARMINAXCONTROL.GarminAxControl_t.1 ActiveX control in npGarmin.dll in the Garmin Communicator Plug-In 2.6.4…

Mitigation only
Fix from $1,950 2009-05-11