CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

Attack VectorsLocal

Local Attack CVEs

Requires local system access — the attacker must be logged in or have physical presence.

CVE-2026-32323
HIGH7.3

Mullvad VPN is a VPN client app for desktop and mobile. When using macOS with versions 2026.1 and below, Mullvad VPN may allow local privilege escalation during installation or upgrade. The installer package executes binaries from /Applications/Mullvad VPN.app without verifying if the bundle is attacker-controlled or that the path is the legitimate Mullvad application. A user in the admin group can pre-place a crafted application bundle at that location and may be able to achieve code execution as root. Since the issue only affected the installer, there is no immediate need for users to update if they are already running an older version. This issue has been fixed in version 2026.2-beta1.

Local
Published May 19, 2026
Page 1
CVE-2026-22069
HIGH7.3

A local privilege escalation vulnerability exists in O+ Connect because it fails to validate the identity of the caller on the pipe interface.

Local
Published May 19, 2026
CVE-2026-25110
LOW3.3

in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.

Local
Published May 19, 2026
CVE-2026-25781
HIGH8.4

in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS and it cannot be recovered.

Local
Published May 19, 2026
CVE-2026-25850
MEDIUM5.5

in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak

Local
Published May 19, 2026
CVE-2026-27766
MEDIUM5.5

in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak.

Local
Published May 19, 2026
CVE-2026-27781
LOW3.3

in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.

Local
Published May 19, 2026
CVE-2026-28733
MEDIUM6.5

in OpenHarmony v6.0 and prior versions allow a local attacker arbitrary code execution.

Local
Published May 19, 2026
CVE-2026-28751
LOW3.3

in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.

Local
Published May 19, 2026
CVE-2026-33565
LOW3.3

in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS.

Local
Published May 19, 2026
CVE-2026-47307
MEDIUM5.5

NULL pointer dereference vulnerability in Samsung Open Source Walrus allows an attacker to cause a denial of service via a crafted WebAssembly module containing deeply nested instructions. This issue affects Walrus: f339b8ee4ea701772e8ae640b3d1b12ac02b1ae9.

Local
Published May 19, 2026
CVE-2026-47308
MEDIUM5.5

NULL pointer dereference vulnerability in Samsung Open Source Walrus allows Pointer Manipulation. This issue affects Walrus: f339b8ee4ea701772e8ae640b3d1b12ac02b1ae9.

Local
Published May 19, 2026
CVE-2026-47309
MEDIUM5.5

Uncontrolled Recursion vulnerability in Samsung Open Source Escargot allows Oversized Serialized Data Payloads. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

Local
Published May 19, 2026
CVE-2026-47310
HIGH7.8

Use after free vulnerability in Samsung Open Source Escargot allows Pointer Manipulation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

Local
Published May 19, 2026
CVE-2026-47311
HIGH7.8

Heap-based buffer overflow vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

Local
Published May 19, 2026
CVE-2026-47312
MEDIUM5.5

Release of invalid pointer or reference vulnerability in Samsung Open Source Escargot allows Buffer Manipulation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

Local
Published May 19, 2026
CVE-2026-47313
MEDIUM5.5

Memory allocation with excessive size value vulnerability in Samsung Open Source Escargot allows Excessive Allocation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

Local
Published May 19, 2026
CVE-2026-47314
HIGH7.8

Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

Local
Published May 19, 2026
CVE-2026-47315
MEDIUM5.5

Improper Check for Unusual or Exceptional Conditions vulnerability in Samsung Open Source Escargot allows Input Data Manipulation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

Local
Published May 19, 2026
CVE-2026-47316
MEDIUM5.5

Improper Check or Handling of Exceptional Conditions vulnerability in Samsung Open Source Escargot allows Input Data Manipulation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

Local
Published May 19, 2026