Local Code Execution Vulnerability in OpenHarmony Products by OpenHarmony
CVE-2026-28733

6.5MEDIUM

Key Information:

Vendor
CVE Published:
19 May 2026

What is CVE-2026-28733?

A vulnerability exists in OpenHarmony versions 6.0 and earlier that allows local attackers to execute arbitrary code on affected systems. This weakness could potentially lead to unauthorized access and exploitation of system resources, highlighting the need for prompt updates and patches to secure the software environment.

Affected Version(s)

OpenHarmony v5.0.3

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.