Known vulnerabilities in IdeaPad Flex 5 16ALC7

Vendor: Lenovo
Software CPE: cpe:2.3:h:lenovo:ideapad_flex_5_16alc7:*:*:*:*:*:*:*:*
Total vulnerabilities: 24
Public exploits: 2
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IdeaPad Flex 5 16ALC7 IdeaPad Flex 5 16ALC7 is affected by 24 known vulnerabilities: 1 high, 2 medium, 21 low Critical High Medium Low

Vulnerabilities (24)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU119817 - State Issues
CVE-2025-9614
CWE-371 Low
No
No
- 10.12.2025 SB20251210202
SB2025122701
#VU119816 - Insufficient Technical Documentation
CVE-2025-9613
CWE-1059 Low
No
No
- 10.12.2025 SB20251210202
SB2025122701
#VU119815 - Improper Validation of Integrity Check Value
CVE-2025-9612
CWE-354 Low
No
No
- 10.12.2025 SB20251210202
SB2025122701
#VU119804 - Exposure of sensitive information to an unauthorized actor
CVE-2024-38798
CWE-200 Low
No
No
- 10.12.2025 SB20251210176
SB2025122701
SB2026020648
and 2 more
#VU119030 - Exposure of Sensitive System Information to an Unauthorized Control Sphere
CVE-2025-47319
CWE-497 Low
No
No
- 02.12.2025 SB2025120232
SB2025122701
#VU119032 - Integer overflow
CVE-2025-47323
CWE-190 Low
No
No
- 02.12.2025 SB2025120232
SB2025122701
#VU113731 - Uncaught Exception
CVE-2025-3770
CWE-248 Low
No
No
- 07.08.2025 SB2025080722
SB20250908112
SB2025092259
and 9 more
#VU112557 - Information Exposure through Microarchitectural State after Transient Execution
CVE-2024-36349
CWE-1342 Low
No
No
- 08.07.2025 SB2025070901
SB2025070903
SB2025072844
and 9 more
#VU112556 - Information Exposure through Microarchitectural State after Transient Execution
CVE-2024-36348
CWE-1342 Low
No
No
- 08.07.2025 SB2025070901
SB2025070903
SB2025072844
and 9 more
#VU112552 - Information Exposure through Microarchitectural State after Transient Execution
CVE-2024-36357
CWE-1342 Low
No
No
- 08.07.2025 SB2025070882
SB2025070903
SB2025070904
and 43 more
#VU112549 - Information Exposure through Microarchitectural State after Transient Execution
CVE-2024-36350
CWE-1342 Low
No
No
- 08.07.2025 SB2025070882
SB2025070903
SB2025070904
and 40 more
#VU111030 - Out-of-bounds read
CVE-2025-2884
CWE-125 Low
No
No
- 11.06.2025 SB2025061103
SB2025061303
SB2025072845
and 4 more
#VU109411 - Improper Access Control
CVE-2025-20100
CWE-284 Low
No
No
- 19.05.2025 SB2025051921
SB2025072844
#VU109410 - Insufficient Control Flow Management
CVE-2025-20004
CWE-691 Low
No
No
- 19.05.2025 SB2025051921
SB2025072844
#VU109409 - Improper restriction of software interfaces to hardware features
CVE-2024-48869
CWE-1256 Low
No
No
- 19.05.2025 SB2025051921
SB2025072844
#VU95180 - Integer overflow
CVE-2022-36765
CWE-190 Low
No
No
- 02.08.2024 SB2024080236
SB2024021453
SB2024021639
and 8 more
#VU89083 - Integer overflow
CVE-2022-36763
CWE-190 Low
No
No
- 01.05.2024 SB2024011752
SB2024050117
SB2024021453
and 9 more
#VU87737 - Integer overflow
CVE-2022-36764
CWE-190 Medium
No
No
- 22.03.2024 SB2024011752
SB2024032253
SB2024032254
and 11 more
#VU83973 - Improper input validation
CVE-2023-40238
CWE-20 Low
No
No
- 07.12.2023 SB2023120718
SB2023120689
#VU83971 - Permissions, Privileges, and Access Controls
CVE-2023-39539
CWE-264 Low
No
No
- 07.12.2023 SB2023120714
SB2024082035
SB2023120689


Showing elements 1 - 20 out of 24