Known Vulnerabilities for Flex 2 Pro-15 by Lenovo
Listed below are 1 of the newest known vulnerabilities associated with "Flex 2 Pro-15" by "Lenovo".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
More device details and information can be found at device.report here: Lenovo Flex 2 Pro-15
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65608 json | Grav versions >= 1.7.0 and before 2.0.9 contain a remote code execution vulnerability. FlexDirectory::dynamicDataField() reso... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-64127 json | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: ecred_reconfigure: send packed pdu, no... | Not Provided | 2026-07-19 | 2026-07-19 |
| CVE-2026-64053 json | In the Linux kernel, the following vulnerability has been resolved: block: don't overwrite bip_vcnt in bio_integrity_copy_us... | Not Provided | 2026-07-19 | 2026-07-20 |
| CVE-2026-62235 json | Grav Flex-Objects before version 1.4.3 contains a broken access control vulnerability in the admin-next REST API that allows ... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-58655 json | The bundled Grav Flex Objects plugin (getgrav/grav-plugin-flex-objects) before 1.4.0 contains a stored server-side template i... | Not Provided | 2026-07-15 | 2026-07-15 |
| CVE-2026-46138 json | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: Fix OOB read and infinite loop in ... | Not Provided | 2026-05-28 | 2026-06-14 |
| CVE-2025-15645 json | Ledger Nano X, Flex, and Stax devices contain a denial of service vulnerability in the MCU firmware update process due to mis... | Not Provided | 2026-05-19 | 2026-05-20 |
| CVE-2015-5684 json | MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A buffer overflow vulnerability was repor... | 9.8 - CRITICAL | 2020-03-27 | 2020-04-01 |
| CVE-2012-6442 json | When an affected product receives a valid CIP message from an unauthorized or unintended source to Port 2222/TCP, Port 2222/U... | 9.8 - CRITICAL | 2013-01-24 | 2026-06-03 |
| CVE-2012-6440 json | The Web server password authentication mechanism used by the products is vulnerable to a MitM and Replay attack. Successful e... | 9.8 - CRITICAL | 2013-01-24 | 2026-06-03 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Lenovo | Flex 2 Pro-15 | - |