CVE-2026-25293
critical
CVSS v3
9.8
CVSS v2
—
VIR risk
9.8
Description
Buffer overflow due to incorrect authorization in PLC FW
Predictions
Exploit likelihood
97%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: product-security@qualcomm.com — https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2026-bulletin.html
References
CWEs
CWE-863
Verify integrity in audit chain (admin only). AS-IS.