Products: 8
    Vulnerabilities: 19
    Known Exploited: 0
    13
    Critical Level Threats
    5
    High Level Threats
    1
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-27853

    Authentication Bypass in Garmin WDU WebSocket APIs

    Last Modified: Jun 02, 2026
    Published: May 13, 2026

    CVE-2025-27851

    Cross‑Site WebSocket Hijacking in Garmin WDU Firmware

    Last Modified: Jun 02, 2026
    Published: May 13, 2026

    CVE-2025-27850

    Symlink File Disclosure in Garmin WDU Firmware via Malicious Graphics Package

    Last Modified: Jun 02, 2026
    Published: May 13, 2026

    CVE-2025-27852

    Local XSS in Garmin WDU Allows Full Admin Access

    Last Modified: Jun 02, 2026
    Published: May 13, 2026

    CVE-2023-23302

    The `Toybox.GenericChannel.setDeviceConfig` API method in CIQ API version 1.2.0 through 4.1.7 does not validate its parameter, which can result in buffer overflows when copying various attributes. A malicious application could call the API method with specially crafted object and hijack the execution of the device's firmware.

    Last Modified: Jan 21, 2025
    Published: May 23, 2023
    Items Per Page