Vulnerabilities
Summary — last 7 days
New vulnerabilities2,855▼ 166 vs. last week
Critical / high1,379▲ 45 vs. last week
New active exploitation (KEV)5▼ 3 vs. last week
Unscored (no CVSS)266▼ 260 vs. last week
20 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Analyzed | High (8.4) | 0.13% | — | Mediatek Mt2718 FirmwareMediatek Mt6580 FirmwareMediatek Mt6739 FirmwareMediatek Mt6761 Firmware+49 | 9/7/2026 | 9/9/2026 | In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS11262030; Issue ID: MSV-9196. | |
| Analyzed | High (8.4) | 0.13% | — | Mediatek Mt2718 FirmwareMediatek Mt6580 FirmwareMediatek Mt6739 FirmwareMediatek Mt6761 Firmware+49 | 9/7/2026 | 9/9/2026 | In vdec, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS11262030; Issue ID: MSV-9197. | |
| Analyzed | Medium (6) | 0.17% | — | Mediatek Mt6989 FirmwareMediatek Mt8755 FirmwareMediatek Mt8768 FirmwareMediatek Mt8771 Firmware+7 | 8/3/2026 | 8/19/2026 | In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10965550 / ALPS11393405; Issue ID: MSV-6941. | |
| Analyzed | Medium (4.4) | 0.15% | — | Mediatek Mt6983 FirmwareMediatek Mt8676 FirmwareMediatek Mt8678 FirmwareMediatek Mt8755 Firmware+13 | 8/3/2026 | 8/19/2026 | In geniezone, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11036877; Issue ID: MSV-7132. | |
| Analyzed | Medium (4.4) | 0.16% | — | Mediatek Mt6991 FirmwareMediatek Mt6993 FirmwareMediatek Mt8126 FirmwareMediatek Mt8171 Firmware+13 | 8/3/2026 | 8/19/2026 | In display, there is a possible information disclosure due to an integer overflow. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11004274; Issue ID: MSV-7749. | |
| Analyzed | Medium (4.4) | 0.16% | — | Mediatek Mt6991 FirmwareMediatek Mt6993 FirmwareMediatek Mt8126 FirmwareMediatek Mt8171 Firmware+13 | 8/3/2026 | 8/19/2026 | In display, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11004276; Issue ID: MSV-7757. | |
| Analyzed | High (7.7) | 0.17% | — | Mediatek Mt8893 FirmwareMediatek Mt6739 FirmwareMediatek Mt6761 FirmwareMediatek Mt6765 Firmware+31 | 8/3/2026 | 8/19/2026 | In Telephony, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS11087526; Issue ID: MSV-8243. | |
| Analyzed | Medium (6) | 0.17% | — | Mediatek Mt6989 FirmwareMediatek Mt8755 FirmwareMediatek Mt8768 FirmwareMediatek Mt8771 Firmware+10 | 8/3/2026 | 8/19/2026 | In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10965373; Issue ID: MSV-6935. | |
| Analyzed | Medium (6) | 0.17% | — | Mediatek Mt8910 FirmwareMediatek Mt6991 FirmwareMediatek Mt6993 FirmwareMediatek Mt8188 Firmware+6 | 8/3/2026 | 8/19/2026 | In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11009963; Issue ID: MSV-7658. | |
| Analyzed | Medium (6) | 0.17% | — | Mediatek Mt8910 FirmwareMediatek Mt6991 FirmwareMediatek Mt6993 FirmwareMediatek Mt8126 Firmware+13 | 8/3/2026 | 8/19/2026 | In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11004276; Issue ID: MSV-7748. | |
| Analyzed | Medium (6) | 0.13% | — | Mediatek Mt6991 FirmwareMediatek Mt6993 FirmwareMediatek Mt8126 FirmwareMediatek Mt8171 Firmware+13 | 8/3/2026 | 8/19/2026 | In display, there is a possible escalation of privilege due to a race condition. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11019183; Issue ID: MSV-7758. | |
| Analyzed | Medium (6) | 0.17% | — | Mediatek Mt6991 FirmwareMediatek Mt8910 FirmwareMediatek Mt6993 FirmwareMediatek Mt8126 Firmware+13 | 8/3/2026 | 8/19/2026 | In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11019722; Issue ID: MSV-7759. | |
| Analyzed | High (7.8) | 0.11% | — | Mediatek Mt6739 FirmwareMediatek Mt6761 FirmwareMediatek Mt6765 FirmwareMediatek Mt6768 Firmware+32 | 6/1/2026 | 7/22/2026 | In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10873936; Issue ID: MSV-6784. | |
| Analyzed | Medium (6.4) | 0.08% | — | Mediatek Mt8673 FirmwareMediatek Mt8765 FirmwareMediatek Mt8766 FirmwareMediatek Mt8768 Firmware+32 | 6/1/2026 | 7/22/2026 | In geniezone, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10873936; Issue ID: MSV-6786. | |
| Analyzed | Medium (6.7) | 0.11% | — | Mediatek Mt8673 FirmwareMediatek Mt8765 FirmwareMediatek Mt8766 FirmwareMediatek Mt8768 Firmware+32 | 6/1/2026 | 7/22/2026 | In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10886526; Issue ID: MSV-6791. | |
| Analyzed | Medium (6.7) | 0.15% | — | Mediatek Mt8115 FirmwareMediatek Mt8186 FirmwareMediatek Mt8188 FirmwareMediatek Mt8196 Firmware+28 | 5/4/2026 | 6/17/2026 | In slbc, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10828685; Issue ID: MSV-6504. | |
| Analyzed | Medium (6.7) | 0.15% | — | Mediatek Mt6765 FirmwareMediatek Mt6768 FirmwareMediatek Mt6789 FirmwareMediatek Mt6877 Firmware+18 | 5/4/2026 | 6/17/2026 | In geniezone, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10708513; Issue ID: MSV-6281. | |
| Analyzed | Medium (6.7) | 0.11% | — | Mediatek Mt6768 FirmwareMediatek Mt6789 FirmwareMediatek Mt6877 FirmwareMediatek Mt6899 Firmware+13 | 5/4/2026 | 6/17/2026 | In geniezone, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10724073; Issue ID: MSV-6296. | |
| Analyzed | High (8) | 0.29% | — | Mediatek Mt2735 FirmwareMediatek Mt2737 FirmwareMediatek Mt6779 FirmwareMediatek Mt6781 Firmware+54 | 4/7/2026 | 7/24/2026 | In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID:… | |
| Modified | Medium (6.5) | 0.36% | — | Mediatek Mt2735 FirmwareMediatek Mt2737 FirmwareMediatek Mt6739 FirmwareMediatek Mt6761 Firmware+81 | 4/7/2025 | 6/17/2026 | In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01519028;… |