Skip to main content

Threats Tagged 'cwe-264'

View all threats tagged with 'cwe-264'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cwe-264

Threats Tagged 'cwe-264'

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-101102 is a medium severity vulnerability in deepseek-ai deepseek-harness versions 0.1.0-rc.0 through 0.1.0-rc.7. It affects the run_code function in the Code Mode Sandbox component, resulting in a sandbox issue that can be exploited remotely. The vendor explicitly states that the sandbox is for containment only and not a security boundary. There is no vendor response or patch available at this time.

Join the discussion

Permission control vulnerability in the app lock module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Join the discussion

Permission control vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Join the discussion

Permission control vulnerability in the app management module. Impact: Successful exploitation of this vulnerability may affect availability.

Join the discussion

DoS vulnerability in the input device module. Impact: Successful exploitation of this vulnerability may affect availability.

Join the discussion

DoS vulnerability in the preview service module. Impact: Successful exploitation of this vulnerability may affect availability.

Join the discussion

Permission control vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Join the discussion

Permission control vulnerability in the event notification module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Join the discussion

CVE-2026-49303 is a permission control vulnerability in the notification module of Huawei HarmonyOS. Exploiting this flaw may impact system availability. The vulnerability has a medium severity rating with a CVSS score of 5.1. It affects specific versions of HarmonyOS including 4.3.1, 4.3.0, 4.2.0, 4.0.0, 15.0.0, 14.2.0, and 14.0.0. No known exploits are reported in the wild, and no patch information is provided.

Join the discussion

CVE-2026-49308 is a permission control vulnerability in the clipboard module of Huawei HarmonyOS version 6.1.0. Exploitation may lead to unauthorized disclosure of service confidentiality. The vulnerability has a medium severity with a CVSS score of 5.5. No official patch or remediation guidance is currently available from the vendor. There are no known exploits in the wild at this time.

Join the discussion

Showing 1 to 10 of 44 results

Filters:Tag: cwe-264
Page 1 of 5
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses