n
nxp
Security Risk Profile
47
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 24 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from August 7, 2017 to present
24
Total CVEs
11
Critical+High
0
Exploited
8
Unpatched
Threat Assessment
Avg CVSS
7
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
8
Critical/High
Risk Level
47/100
medium
📈 1 in Last 30 Days
Severity Distribution
Critical
3High
8Medium
13Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Buffer Overflow
7
2
Integer Overflow
2
3
Weak Encryption
1
4
Code Injection
1
Most Affected Products
1. NXP Mcuxpresso Software Development Kit5
2. NXP I.mx 6dual Firmware4
3. NXP I.mx 6duallite Firmware4
4. NXP I.mx 6dualplus Firmware4
5. NXP I.mx 6quad Firmware4
Recent Vulnerabilities
See more →CVE-2026-4648
CVSS 6.8medium
Insufficient Encryption Level in CasfID Servicios Tecnológicos NFC Wristbands
Jul 28, 2026🔧 No Patch
CVE-2025-29338
CVSS 5.6medium
May 13, 2026🔧 No Patch
CVE-2024-57809
CVSS 5.5medium
PCI: imx6: Fix suspend/resume support on i.MX6QDL
Jan 11, 2025
CVE-2024-38532
CVSS 7.1high
TEST_KEY used in example dcp_tool reference implementation
Jun 28, 2024🔧 No Patch
CVE-2023-39902
CVSS 7.8high
Oct 17, 2023
CVE-2022-45163
CVSS 5.3medium
Nov 18, 2022🔧 No Patch
CVE-2021-22680
CVSS 9.8critical
NXP MQX Integer Overflow or Wraparound
May 3, 2022
CVE-2021-27421
CVSS 9.8critical
NXP MCUXpresso SDK Integer Overflow or Wraparound
May 3, 2022
CVE-2022-22819
CVSS 7.8high
Mar 23, 2022🔧 No Patch
CVE-2021-44149
CVSS 7.8high
Dec 7, 2021🔧 No Patch
Monitor nxp in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.