VulnSea

qualcomm has 15 CVEs on record. Disclosure cadence is accelerating: 15 in the last 90 days against 0 in the 90 before. The busiest recent month was September 2026 with 15. The median CVSS is 7.8 (high). None have a confirmed exploitation report. The dominant weakness classes are CWE-126 (5) and CWE-787 (3). Most affected products: cologne_firmware (9), wsa8845h_firmware (2), ar8035_firmware (1).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
7.8
Publish → KEV
Last 90 days
15 prev 0

Products

  • cologne_firmware 9
  • wsa8845h_firmware 2
  • ar8035_firmware 1
  • iqx5121_firmware 1
  • lemans_au_lgit_firmware 1
  • q-7790_firmware 1
15
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

qualcomm vulnerabilities

CVEs affecting qualcomm, newest first. Open any entry for full detail, references, and exploit status.

15 CVEsRSS

CVE-2026-24073High· 7.8
5d ago

Memory corruption when processing decode statistics due to insufficient validation of offset against structure size.

Memory corruption when processing decode statistics due to insufficient validation of offset against structure size.

Twilightqualcomm · cologne_firmwareEPSS 0.16%via NVD
CVE-2026-24081High· 7.4
5d ago

Transient DOS when processing a channel map with insufficient used channels and adaptive frequency hopping is fully enabled.

Transient DOS when processing a channel map with insufficient used channels and adaptive frequency hopping is fully enabled.

Twilightqualcomm · ar8035_firmwareEPSS 0.16%via NVD
CVE-2026-24075High· 7.8
5d ago

Memory Corruption when multiple threads issue concurrent IOCTL requests to the device control handler due to improper synchronization and race conditions.

Memory Corruption when multiple threads issue concurrent IOCTL requests to the device control handler due to improper synchronization and race conditions.

Twilightqualcomm · wsa8845h_firmwareEPSS 0.11%via NVD
CVE-2026-24074High· 7.8
5d ago

Memory Corruption when processing data with large offset and length values exceeds buffer limits during data copy operations.

Memory Corruption when processing data with large offset and length values exceeds buffer limits during data copy operations.

Twilightqualcomm · iqx5121_firmwareEPSS 0.16%via NVD
CVE-2026-25261Medium· 6.7
5d ago

Memory corruption while processing rear sensor IOCTL calls.

Memory corruption while processing rear sensor IOCTL calls.

Sunlitqualcomm · cologne_firmwareEPSS 0.11%via NVD
CVE-2025-59607High· 7.8
5d ago

Memory Corruption when copying large input data exceeds normal allocation limits.

Memory Corruption when copying large input data exceeds normal allocation limits.

Twilightqualcomm · cologne_firmwareEPSS 0.11%via NVD
CVE-2026-25281High· 7.4
5d ago

Transient DOS when processing large or numerous request buffers without sufficient memory allocation validation.

Transient DOS when processing large or numerous request buffers without sufficient memory allocation validation.

Twilightqualcomm · cologne_firmwareEPSS 0.16%via NVD
CVE-2026-25275High· 7.5
5d ago

Transient DOS when processing authentication frames with invalid FILS information element header lengths.

Transient DOS when processing authentication frames with invalid FILS information element header lengths.

Twilightqualcomm · q-7790_firmwareEPSS 0.30%via NVD
CVE-2026-25282High· 7.9
5d ago

Transient DOS when processing unverified data from a neighboring system causes out of bound memory access.

Transient DOS when processing unverified data from a neighboring system causes out of bound memory access.

Twilightqualcomm · cologne_firmwareEPSS 0.10%via NVD
CVE-2026-25278High· 7.8
5d ago

Memory Corruption when processing I2C transfer requests due to a race condition between memory allocation and data copying.

Memory Corruption when processing I2C transfer requests due to a race condition between memory allocation and data copying.

Twilightqualcomm · lemans_au_lgit_firmwareEPSS 0.09%via NVD
CVE-2026-25290High· 7.8
5d ago

Memory Corruption when validating large data buffers from external sources using addition to check buffer length.

Memory Corruption when validating large data buffers from external sources using addition to check buffer length.

Twilightqualcomm · cologne_firmwareEPSS 0.11%via NVD
CVE-2026-25284High· 7.3
5d ago

Information Disclosure when a pointer is reused after being deallocated.

Information Disclosure when a pointer is reused after being deallocated.

Twilightqualcomm · cologne_firmwareEPSS 0.11%via NVD
CVE-2026-25283High· 8.8
5d ago

Memory Corruption when copying unverified data from an external source exceeds the allocated buffer size.

Memory Corruption when copying unverified data from an external source exceeds the allocated buffer size.

Twilightqualcomm · cologne_firmwareEPSS 0.11%via NVD
CVE-2026-25294High· 7.4
5d ago

Transient DOS while parsing frame during channel usage.

Transient DOS while parsing frame during channel usage.

Twilightqualcomm · cologne_firmwareEPSS 0.16%via NVD
CVE-2026-25280High· 7.8
5d ago

Memory corruption when processing escape handling flow with insufficient user buffer sizes.

Memory corruption when processing escape handling flow with insufficient user buffer sizes.

Twilightqualcomm · wsa8845h_firmwareEPSS 0.11%via NVD
qualcomm vulnerabilities (CVEs) · VulnSea