Vulnerabilities (CVE)

Total 397360 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-21066 1 Samsung 1 Notes 2026-06-17 N/A 4.0 MEDIUM
Out-of-bounds read in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-of-bounds memory.
CVE-2025-21065 2026-06-17 N/A 6.6 MEDIUM
Improper input validation in Retail Mode prior to version 5.59.11 allows self attackers to execute privileged commands on their own devices.
CVE-2025-21064 1 Samsung 1 Smart Switch 2026-06-17 N/A 8.8 HIGH
Improper authentication in Smart Switch prior to version 3.7.66.6 allows adjacent attackers to access transferring data.
CVE-2025-21063 1 Samsung 2 Android, Voice Recorder 2026-06-17 N/A 4.6 MEDIUM
Improper access control in Samsung Voice Recorder prior to version 21.5.73.12 in Android 15 and 21.5.81.40 in Android 16 allows physical attackers to access recording files on the lock screen.
CVE-2025-21062 1 Samsung 1 Smart Switch 2026-06-17 N/A 7.8 HIGH
Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.67.2 allows local attackers to replace the restoring application. User interaction is required for triggering this vulnerability.
CVE-2025-21061 1 Samsung 1 Smart Switch 2026-06-17 N/A 7.1 HIGH
Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access sensitive data. User interaction is required for triggering this vulnerability.
CVE-2025-21060 1 Samsung 1 Smart Switch 2026-06-17 N/A 5.5 MEDIUM
Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access backup data from applications. User interaction is required for triggering this vulnerability.
CVE-2025-21059 1 Samsung 1 Health 2026-06-17 N/A 6.2 MEDIUM
Improper authorization in Samsung Health prior to version 6.30.5.105 allows local attackers to access data in Samsung Health.
CVE-2025-21058 2026-06-17 N/A 7.3 HIGH
Improper access control in Routines prior to version 4.8.7.1 in Android 15 and 4.9.6.0 in Android 16 allows local attackers to potentially execute arbitrary code with SystemUI privilege.
CVE-2025-21057 1 Samsung 1 Notes 2026-06-17 N/A 4.0 MEDIUM
Use of implicit intent for sensitive communication in Samsung Notes prior to version 4.4.30.63 allows local attackers to access shared notes.
CVE-2025-21056 2026-06-17 N/A 6.6 MEDIUM
Improper input validation in Retail Mode prior to version 5.59.4 allows self attackers to execute privileged commands on their own devices.
CVE-2025-21055 1 Samsung 1 Android 2026-06-17 N/A 4.3 MEDIUM
Out-of-bounds read and write in libimagecodec.quram.so prior to SMR Oct-2025 Release 1 allows remote attackers to access out-of-bounds memory.
CVE-2025-21054 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Out-of-bounds read in the parsing header for JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to potentially access out-of-bounds memory.
CVE-2025-21053 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Out-of-bounds write in the parsing header for JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to cause memory corruption.
CVE-2025-21052 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Out-of-bounds write under specific condition in the pre-processing of JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to cause memory corruption.
CVE-2025-21051 1 Samsung 1 Android 2026-06-17 N/A 4.0 MEDIUM
Out-of-bounds write in the pre-processing of JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local attackers to write out-of-bounds memory.
CVE-2025-21050 1 Samsung 1 Android 2026-06-17 N/A 7.1 HIGH
Improper input validiation in Contacts prior to SMR Oct-2025 Release 1 allows local attackers to access data across multiple user profiles.
CVE-2025-21049 1 Samsung 1 Android 2026-06-17 N/A 5.5 MEDIUM
Improper access control in SecSettings prior to SMR Oct-2025 Release 1 allows local attackers to access sensitive information. User interaction is required for triggering this vulnerability.
CVE-2025-21048 1 Samsung 1 Android 2026-06-17 N/A 6.7 MEDIUM
Relative path traversal in Knox Enterprise prior to SMR Oct-2025 Release 1 allows local attackers to execute arbitrary code.
CVE-2025-21047 1 Samsung 1 Android 2026-06-17 N/A 5.2 MEDIUM
Improper access control in KnoxGuard prior to SMR Oct-2025 Release 1 allows physical attackers to use the privileged APIs.