nxp
Security Risk Profile
47
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 24 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from August 7, 2017 to present
24
Total CVEs
11
Critical+High
0
Exploited
8
Unpatched
Threat Assessment
Avg CVSS
7
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
8
Critical/High
Risk Level
47/100
medium
📈 1 in Last 30 Days
Severity Distribution
Critical
3High
8Medium
13Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Buffer Overflow
7
2
Integer Overflow
2
3
Weak Encryption
1
4
Code Injection
1
Most Affected Products
1. NXP Mcuxpresso Software Development Kit5
2. NXP I.mx 6dual Firmware4
3. NXP I.mx 6duallite Firmware4
4. NXP I.mx 6dualplus Firmware4
5. NXP I.mx 6quad Firmware4
Recent Vulnerabilities
See more →CVE-2026-4648
CVSS 6.8medium
Insufficient Encryption Level in CasfID Servicios Tecnológicos NFC Wristbands
7/28/2026🔧 No Patch
CVE-2025-29338
CVSS 5.6medium
5/13/2026🔧 No Patch
CVE-2024-57809
CVSS 5.5medium
PCI: imx6: Fix suspend/resume support on i.MX6QDL
1/11/2025
CVE-2024-38532
CVSS 7.1high
TEST_KEY used in example dcp_tool reference implementation
6/28/2024🔧 No Patch
CVE-2023-39902
CVSS 7.8high
10/17/2023
CVE-2022-45163
CVSS 5.3medium
11/18/2022🔧 No Patch
CVE-2021-22680
CVSS 9.8critical
NXP MQX Integer Overflow or Wraparound
5/3/2022
CVE-2021-27421
CVSS 9.8critical
NXP MCUXpresso SDK Integer Overflow or Wraparound
5/3/2022
CVE-2022-22819
CVSS 7.8high
3/23/2022🔧 No Patch
CVE-2021-44149
CVSS 7.8high
12/7/2021🔧 No Patch
Monitor nxp in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.