| CVE-2026-20998 | 9.8 | critical | samsung / smart switch | Improper authentication in Smart Switch prior to version 3.7.69.15 allows remote attackers to bypass authenticatio | 173d ago |
| CVE-2026-20997 | 9.8 | critical | samsung / smart switch | Improper verification of cryptographic signature in Smart Switch prior to version 3.7.69.15 allows remote attacker | 173d ago |
| CVE-2026-8915 | 8.8 | high | samsung / escargot | Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers. | 101d ago |
| CVE-2026-20990 | 8.1 | high | samsung / android | Improper export of android application components in Secure Folder prior to SMR Mar-2026 Release 1 allows local at | 173d ago |
| CVE-2026-21072 | 7.8 | high | samsung / android | Improper input validation in VC1 codec in libsavsvc.so prior to SMR Aug-2026 Release 1 allows local attackers to w | 26d ago |
| CVE-2026-21071 | 7.8 | high | samsung / android | Improper input validation in MPEG4 codec in libsavsvc.so prior to SMR Aug-2026 Release 1 allows local attackers to | 26d ago |
| CVE-2026-21069 | 7.8 | high | samsung / android | Incorrect conversion between numeric types in VC1 codec in libsavsvc.so prior to SMR Aug-2026 Release 1 allows loc | 26d ago |
| CVE-2026-21068 | 7.8 | high | samsung / android | Stack-based buffer overflow in libril_sem.so prior to SMR Aug-2026 Release 1 allows privileged local attackers to | 26d ago |
| CVE-2026-21067 | 7.8 | high | samsung / android | Improper input validation in libsmsd.so prior to SMR Aug-2026 Release 1 allows local attackers to write out-of-bou | 26d ago |
| CVE-2026-21066 | 7.8 | high | samsung / android | Improper input validation in libcodec2_sec_flacdec.so prior to SMR Aug-2026 Release 1 allows local attackers to wr | 26d ago |
| CVE-2026-21065 | 7.8 | high | samsung / android | Out-of-bounds write in libcodec2secqcelpdec.so prior to SMR Aug-2026 Release 1 allows local attackers to write out | 26d ago |
| CVE-2026-21031 | 7.8 | high | samsung / android | Improper authorization in AppBlock prior to SMR Jun-2026 Release 1 allows local attacker to launch arbitrary activ | 92d ago |
| CVE-2026-21030 | 7.8 | high | samsung / android | Improper access control in MediaTek Audio HAL prior to SMR Jun-2026 Release 1 allows local attackers to trigger pr | 92d ago |
| CVE-2026-21029 | 7.8 | high | samsung / android | Improper export of android application components in Galaxy Editing Service prior to SMR Jun-2026 Release 1 allows | 92d ago |
| CVE-2026-47314 | 7.8 | high | samsung / escargot | Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers. | 109d ago |
| CVE-2026-47311 | 7.8 | high | samsung / escargot | Heap-based buffer overflow vulnerability in Samsung Open Source Escargot allows Overflow Buffers. | 109d ago |
| CVE-2026-47310 | 7.8 | high | samsung / escargot | Use after free vulnerability in Samsung Open Source Escargot allows Pointer Manipulation. | 109d ago |
| CVE-2026-21020 | 7.8 | high | samsung / android | Improper export of android application components in OmaCP prior to SMR May-2026 Release 1 allows local attackers | 115d ago |
| CVE-2026-21035 | 7.5 | high | samsung / plus tv | Improper input validation in Samsung Plus TV prior to version 1.0.28.6 allows remote attackers to access sensitive | 92d ago |
| CVE-2026-20999 | 7.5 | high | samsung / smart switch | Authentication bypass by replay in Smart Switch prior to version 3.7.69.15 allows remote attackers to trigger priv | 173d ago |
| CVE-2026-21059 | 7.1 | high | samsung / android | Improper export of android application components in Samsung Contacts prior to SMR Aug-2026 Release 1 allows local | 26d ago |
| CVE-2026-21058 | 7.1 | high | samsung / android | Improper input validation in Samsung Contacts prior to SMR Aug-2026 Release 1 allows local attackers to delete fil | 26d ago |
| CVE-2026-21037 | 7.1 | high | samsung / members | Improper input validation in Samsung Members prior to version 5.8.01.5 allows local attackers to access arbitrary | 92d ago |
| CVE-2026-21033 | 7.1 | high | samsung / assistant | Improper export of android application components in ExpressHomeWidgetReceiver of Samsung Assistant prior to versi | 92d ago |
| CVE-2026-21032 | 7.1 | high | samsung / assistant | Improper export of android application components in SmartHomeWidgetReceiver of Samsung Assistant prior to version | 92d ago |
| CVE-2026-21005 | 6.5 | medium | samsung / smart switch | Path traversal in Smart Switch prior to version 3.7.69.15 allows adjacent attackers to overwrite arbitrary files w | 173d ago |
| CVE-2026-21004 | 6.5 | medium | samsung / smart switch | Improper authentication in Smart Switch prior to version 3.7.69.15 allows adjacent attackers to trigger a denial o | 173d ago |
| CVE-2026-20994 | 6.1 | medium | samsung / account | URL redirection in Samsung Account prior to version 15.5.01.1 allows local attackers to potentially get access tok | 173d ago |
| CVE-2026-21002 | 5.5 | medium | samsung / galaxy store | Improper verification of cryptographic signature in Galaxy Store prior to version 4.6.03.8 allows local attacker t | 173d ago |
| CVE-2026-21001 | 5.5 | medium | samsung / galaxy store | Path traversal in Galaxy Store prior to version 4.6.03.8 allows local attacker to create file with Galaxy Store pr | 173d ago |
| CVE-2026-21000 | 5.5 | medium | samsung / galaxy store | Improper access control in Galaxy Store prior to version 4.6.03.8 allows local attacker to create file with Galaxy | 173d ago |
| CVE-2026-20993 | 5.5 | medium | samsung / assistant | Improper export of android application components in Samsung Assistant prior to version 9.3.10.7 allows local atta | 173d ago |
| CVE-2026-20996 | 5.3 | medium | samsung / smart switch | Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.69.15 allows remote attacker | 173d ago |
| CVE-2026-20995 | 5.3 | medium | samsung / smart switch | Exposure of sensitive functionality to an unauthorized actor in Smart Switch prior to version 3.7.69.15 allows rem | 173d ago |
| CVE-2026-20988 | 5 | medium | samsung / android | Improper verification of intent by broadcast receiver in Settings prior to SMR Mar-2026 Release 1 allows local att | 173d ago |
| CVE-2026-20991 | 4.4 | medium | samsung / android | Improper privilege management in ThemeManager prior to SMR Mar-2026 Release 1 allows local privileged attackers to | 173d ago |
| CVE-2026-20992 | 3.3 | low | samsung / android | Improper authorization in Settings prior to SMR Mar-2026 Release 1 allows local attacker to disable configuring th | 173d ago |
| CVE-2026-20989 | 2.4 | low | samsung / android | Improper verification of cryptographic signature in Font Settings prior to SMR Mar-2026 Release 1 allows physical | 173d ago |