Local Information Leak Vulnerability in OpenHarmony Products
CVE-2026-25850

5.5MEDIUM

Key Information:

Vendor
CVE Published:
19 May 2026

What is CVE-2026-25850?

A vulnerability has been identified in OpenHarmony versions 6.0 and earlier, where a local attacker can exploit this weakness to gain unauthorized access to sensitive information. This could potentially allow an attacker to compromise the integrity and confidentiality of the system by extracting information that should remain secure. Users and administrators are advised to strengthen their local security measures and apply updates as soon as they are available.

Affected Version(s)

OpenHarmony v5.0.3

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.