oppo
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting oppo.
- CVE-2026-22072Arbitrary URL Loading in WebView Leading to Token Leakage Risk
- CVE-2026-22078O+ Connect's lack of authentication for IPC channels led to a local privilege escalation vulnerability.7.3
- CVE-2026-22070ColorOS Assistant Path Traversal Vulnerability7.1
- CVE-2026-22077Sensitive Information Disclosure Vulnerability Caused by Trusted Domain Bypass in OPPO Wallet
- CVE-2025-27388Arbitrary URL Loading in WebView Leading to Token Leakage Risk
- CVE-2025-27387OPPO Clone Phone uses weak WPA passphrase as only means of security7.4
- CVE-2024-1609OPPO Store APP has a WebView component privilege escalation vulnerability.
- CVE-2024-1610OPPO Store app include remote account token hijacking and sensitive information leakage9.8
- CVE-2024-1608OPPO Usercenter Credit sdk9.1
- CVE-2023-26311 A remote code execution vulnerability in the webview component of OPPO Store app.7.4
- CVE-2023-26309A remote code execution vulnerability in the webview component7.4
- CVE-2023-26310Command Injection In OPPO Service7.4
- CVE-2021-23247A command injection vulerability found in quick game engine allows arbitrary remote code in quick app. Allows remote attacke0rs to gain arbitrary code execution in quick game engine9.8
- CVE-2021-23246In ACE2 ColorOS11, the attacker can obtain the foreground package name through permission promotion, resulting in user information disclosure.7.5
- CVE-2021-23244ColorOS pregrant dangerous permissions to apps which are listed in a whitelist xml named default-grant-permissions.But some apps in whitelist is not installed, attacker can disguise app with the sa...7.8