CVE-2026-41960
published 2026-05-15CVE-2026-41960: Permission control vulnerability in calls. Impact: Successful exploitation of this vulnerability may affect availability.
PriorityP427medium5.8CVSS 3.1
AVNACHPRNUIRSCCLILAL
EPSS
0.09%
0.6th percentile
Permission control vulnerability in calls. Impact: Successful exploitation of this vulnerability may affect availability.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| huawei | emui | — | — |
| huawei | emui | — | — |
| huawei | emui | — | — |
| huawei | harmonyos | — | — |
| huawei | harmonyos | — | — |
| huawei | harmonyos | — | — |
| huawei | harmonyos | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xp9m-hqhq-462q: Permission control vulnerability in calls
ghsa_unreviewed·2026-05-15
CVE-2026-41960 [MEDIUM] CWE-200 GHSA-xp9m-hqhq-462q: Permission control vulnerability in calls
Permission control vulnerability in calls. Impact: Successful exploitation of this vulnerability may affect availability.
VulDB
Huawei HarmonyOS/EMUI denial of service
vuldb·2026-05-15·CVSS 5.8
CVE-2026-41960 [MEDIUM] Huawei HarmonyOS/EMUI denial of service
A vulnerability was found in Huawei HarmonyOS and EMUI. It has been declared as problematic. Impacted is an unknown function. Such manipulation leads to denial of service.
This vulnerability is referenced as CVE-2026-41960. It is possible to launch the attack remotely. No exploit is available.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-05-15
Published