Vendor
Qualcomm vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 67 vulnerabilities in Qualcomm: 2 in the last 7 days and 32 in the last 90 days, 13 of them critical and 12 exploited in the wild. The most recent, CVE-2026-25265, was published on 22 September 2026. 77 technologies have a page of their own.
- Last 7 days
- 2
- Last 90 days
- 32
- Critical, all time
- 13
- Exploited in the wild
- 12
About Qualcomm
A global leader in wireless technology and semiconductors.
Qualcomm technologies
- Qualcomm Snapdragon Mobile26
- Qualcomm FastConnect 780021
- Qualcomm FastConnect 690017
- Qualcomm FastConnect 7800 Firmware15
- Qualcomm WSA884014
- Qualcomm WSA884514
- Qualcomm WSA8845H14
- Qualcomm Cologne13
- Qualcomm Cologne Firmware13
- Qualcomm FastConnect 670013
- Qualcomm WCD9378C13
- Qualcomm Wsa8840 Firmware13
- Qualcomm Wsa8845 Firmware13
- Qualcomm Wsa8845h Firmware13
- Qualcomm Multiple Chipsets12
- Qualcomm SC8380XP12
- Qualcomm Wcd9378c Firmware12
- Qualcomm FastConnect 6900 Firmware11
- Qualcomm Snapdragon Compute10
- Qualcomm Snapdragon X2 Elite10
- Qualcomm Snapdragon X2 Elite Firmware10
- Qualcomm FastConnect 6700 Firmware9
- Qualcomm SC8380XP Firmware9
- Qualcomm WCD93809
- Qualcomm WCD93859
- Qualcomm QCM54308
- Qualcomm QCM64908
- Qualcomm Snapdragon Consumer IOT8
- Qualcomm Wcd9380 Firmware8
- Qualcomm Wcd9385 Firmware8
- Qualcomm Snapdragon7
- Qualcomm Snapdragon Auto7
- Qualcomm Snapdragon Industrial IOT7
- Qualcomm FastConnect 6200 Firmware6
- Qualcomm Qca00006
- Qualcomm Qca0000 Firmware6
- Qualcomm Video Collaboration VC3 Platform6
- Qualcomm Wcd93706
- Qualcomm Wcd9370 Firmware6
- Qualcomm Wcd93756
- Qualcomm Wcd9375 Firmware6
- Qualcomm Iqx51215
- Qualcomm Iqx5121 Firmware5
- Qualcomm Iqx71815
- Qualcomm Iqx7181 Firmware5
- Qualcomm Qcm5430 Firmware5
- Qualcomm Qcm6490 Firmware5
- Qualcomm SA8255P5
- Qualcomm Video Collaboration Vc3 Platform Firmware5
- Qualcomm Wsa88305
- Qualcomm Wsa8830 Firmware5
- Qualcomm Wsa88355
- Qualcomm Wsa8835 Firmware5
- Qualcomm Fastconnect 62004
- Qualcomm FastConnect 6800 Firmware4
- Qualcomm QCA66964
- Qualcomm SM6250 Firmware4
- Qualcomm Snapdragon 7c\+ Gen 3 Compute4
- Qualcomm Snapdragon 7c\+ Gen 3 Compute Firmware4
- Qualcomm Snapdragon 8 Elite4
- Qualcomm Snapdragon 8cx Gen 3 Compute Platform4
- Qualcomm Snapdragon 8cx Gen 3 Compute Platform Firmware4
- Qualcomm Snapdragon Connectivity4
- Qualcomm Snapdragon Wearables4
- Qualcomm AQT1000 Firmware3
- Qualcomm Qam8295p3
- Qualcomm Qam8295p Firmware3
- Qualcomm QCA6391 Firmware3
- Qualcomm QCA6595AU3
- Qualcomm Qca6696 Firmware3
- Qualcomm Sa8295p3
- Qualcomm Sa8295p Firmware3
- Qualcomm Sm62503
- Qualcomm Snapdragon 7c Compute Platform3
- Qualcomm Snapdragon 7c Compute Platform Firmware3
- Qualcomm Snapdragon 7c Gen 2 Compute Platform3
- Qualcomm Snapdragon 7c Gen 2 Compute Platform Firmware3
Latest Qualcomm vulnerabilities
- CVE-2026-25265: Qualcomm component privilege escalation in temporary file handlinghighCVSS 8.8EPSS 0.1%
- CVE-2026-25264: Qualcomm component privilege escalation in package extractionhighCVSS 8.8EPSS 0.1%
- CVE-2026-25294: Qualcomm transient denial of service while parsing frame during channel usagehighCVSS 7.4EPSS 0.1%
- CVE-2026-25290: Qualcomm component memory corruption in buffer validationhighCVSS 7.8EPSS 0.1%
- CVE-2026-25284: Qualcomm component use-after-free information disclosurehighCVSS 7.3EPSS 0.1%
- CVE-2026-25283: Qualcomm buffer overflow in external data handlinghighCVSS 8.8EPSS 0.1%
- CVE-2026-25282: Qualcomm component out-of-bounds memory access in data processinghighCVSS 7.9EPSS 0.1%
- CVE-2026-25280: Qualcomm component memory corruption in escape handlinghighCVSS 7.8EPSS 0.1%
- CVE-2026-25275: Qualcomm WiFi chipset denial of service in FILS authentication frame handlinghighCVSS 7.5EPSS 0.2%
- CVE-2026-25261: Qualcomm rear sensor driver memory corruption in IOCTL handlingmediumCVSS 6.7EPSS 0.1%
- CVE-2026-24075: Qualcomm device control handler memory corruption via concurrent IOCTL requestshighCVSS 7.8EPSS 0.1%
- CVE-2026-24074: Qualcomm firmware memory corruption in data copy operationshighCVSS 7.8EPSS 0.1%
- CVE-2026-24073: Qualcomm decode statistics memory corruptionhighCVSS 7.8EPSS 0.1%
- CVE-2025-59607: Qualcomm component memory corruption on large input allocationhighCVSS 7.8EPSS 0.1%
- CVE-2026-25292: Qualcomm audio framework memory corruption in fastboot handlerhighCVSS 7.6EPSS 0.2%
- CVE-2026-25289: Qualcomm chipset memory corruption in NAN Service DiscoverycriticalCVSS 9.6EPSS 0.2%
- CVE-2026-24084: Qualcomm UE security capability verification bypasshighCVSS 7.5EPSS 0.3%
- CVE-2026-24083: Qualcomm device driver memory corruption in IOCTL handlinghighCVSS 7.8EPSS 0.1%
- CVE-2026-24080: Qualcomm fingerprint TA memory corruption in request parameter handlinghighCVSS 7.8EPSS 0.1%
- CVE-2026-24078: Qualcomm NG-eCall information disclosure in IPSec negotiationmediumCVSS 6.5EPSS 0.2%
- CVE-2026-24077: Qualcomm wireless driver information disclosure in channel switch processingmediumCVSS 6.5EPSS 0.2%
- CVE-2026-24076: Qualcomm memory corruption in registry value processingmediumCVSS 6.7EPSS 0.1%
- CVE-2026-21366: Qualcomm component memory corruption in packet processinghighCVSS 7.8EPSS 0.1%
- CVE-2026-25271: Qualcomm Snapdragon memory corruption via TOCTOU race conditionhighCVSS 7.8
- CVE-2026-25268: Qualcomm Snapdragon memory corruption in HT40 channel switchinghighCVSS 8.8
Most severe Qualcomm vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2025-21480: Qualcomm Multiple Chipsets incorrect authorization in GPU micronodecriticalexploited in the wildCVSS 8.6EPSS 2.0%
- CVE-2025-21479: Qualcomm Multiple Chipsets incorrect authorization in GPU micronodecriticalexploited in the wildCVSS 8.6EPSS 0.1%
- CVE-2023-33107: Qualcomm Multiple Chipsets Integer Overflow Vulnerabilitycriticalexploited in the wildCVSS 8.4
- CVE-2023-33106: Qualcomm Multiple Chipsets Use of Out-of-Range Pointer Offset Vulnerabilitycriticalexploited in the wildCVSS 8.4
- CVE-2022-22071: Qualcomm Multiple Chipsets Use-After-Free Vulnerabilitycriticalexploited in the wildCVSS 8.4
- CVE-2021-1905: Qualcomm Multiple Chipsets Use-After-Free Vulnerabilitycriticalexploited in the wildCVSS 8.4
- CVE-2026-21385: Qualcomm Multiple Chipsets memory corruption in memory allocationcriticalexploited in the wildCVSS 7.8EPSS 0.2%
- CVE-2024-43047: Qualcomm Multiple Chipsets Use-After-Free Vulnerabilitycriticalexploited in the wildCVSS 7.8
- CVE-2023-33063: Qualcomm Multiple Chipsets Use-After-Free Vulnerabilitycriticalexploited in the wildCVSS 7.8
- CVE-2020-11261: Qualcomm Multiple Chipsets Improper Input Validation Vulnerabilitycriticalexploited in the wildCVSS 7.8
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 0 | 0 | |
| 6 Jul 2026 | 9 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 0 | 0 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 9 | 1 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 0 | 0 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 12 | 0 | |
| 21 Sep 2026 | 2 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/vendors/qualcomm.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Qualcomm vulnerabilities", https://junglewise.ai/threats/vendors/qualcomm, 26 September 2026.