Total
397360 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2025-20986 | 1 Samsung | 11 Galaxy Watch, Galaxy Watch 4, Galaxy Watch 4 Classic and 8 more | 2026-06-17 | N/A | 5.5 MEDIUM |
| Improper access control in ScreenCapture for Galaxy Watch prior to SMR Jun-2025 Release 1 allows local attackers to take screenshots. | |||||
| CVE-2025-20985 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 5.5 MEDIUM |
| Improper privilege management in ThemeManager prior to SMR Jun-2025 Release 1 allows local privileged attackers to reuse trial items. | |||||
| CVE-2025-20984 | 1 Samsung | 11 Galaxy Watch, Galaxy Watch 4, Galaxy Watch 4 Classic and 8 more | 2026-06-17 | N/A | 6.8 MEDIUM |
| Incorrect default permission in Samsung Cloud for Galaxy Watch prior to SMR Jun-2025 Release 1 allows local attackers to access data in Samsung Cloud for Galaxy Watch. | |||||
| CVE-2025-20983 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 6.4 MEDIUM |
| Out-of-bounds write in checking auth secret in KnoxVault trustlet prior to SMR Jul-2025 Release 1 allows local privileged attackers to write out-of-bounds memory. | |||||
| CVE-2025-20982 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 6.4 MEDIUM |
| Out-of-bounds write in setting auth secret in KnoxVault trustlet prior to SMR Jul-2025 Release 1 allows local privileged attackers to write out-of-bounds memory. | |||||
| CVE-2025-20981 | 1 Samsung | 1 Android | 2026-06-17 | N/A | 6.2 MEDIUM |
| Improper access control in AudioService prior to SMR Jun-2025 Release 1 allows local attackers to access sensitive information. | |||||
| CVE-2025-20980 | 1 Google | 1 Android | 2026-06-17 | N/A | 4.0 MEDIUM |
| Out-of-bounds write in libsavscmn prior to Android 15 allows local attackers to cause memory corruption. | |||||
| CVE-2025-20979 | 1 Google | 1 Android | 2026-06-17 | N/A | 8.4 HIGH |
| Out-of-bounds write in libsavscmn prior to Android 15 allows local attackers to execute arbitrary code. | |||||
| CVE-2025-20978 | 2026-06-17 | N/A | 6.2 MEDIUM | ||
| Improper access control in PENUP prior to version 3.9.19.32 allows local attackers to access files with PENUP privilege. | |||||
| CVE-2025-20977 | 1 Samsung | 1 Notes | 2026-06-17 | N/A | 3.3 LOW |
| Use of implicit intent for sensitive communication in translation in Samsung Notes prior to version 4.4.29.23 allows local attackers to get sensitive information. User interaction is required for triggering this vulnerability. | |||||
| CVE-2025-20976 | 1 Samsung | 1 Notes | 2026-06-17 | N/A | 5.5 MEDIUM |
| Out-of-bounds read in applying binary of text content in Samsung Notes prior to version 4.4.29.23 allows attackers to read out-of-bounds memory. | |||||
| CVE-2025-20975 | 2026-06-17 | N/A | 5.5 MEDIUM | ||
| Improper Export of Android Application Components in AODService prior to version 8.8.28.12 allows local attackers to launch arbitrary activity with systemui privilege. | |||||
| CVE-2025-20974 | 2026-06-17 | N/A | 6.1 MEDIUM | ||
| Improper handling of insufficient permission in PackageInstallerCN prior to version 15.0.11.0 allows local attacker to bypass user interaction for requested installation. | |||||
| CVE-2025-20973 | 2026-06-17 | N/A | 5.4 MEDIUM | ||
| Improper authentication in Secure Folder prior to version 1.8.12.0 in Android 13, and 1.9.21.00 in Android 14 allows physical attackers to reset the lock type of Secure Folder. | |||||
| CVE-2025-20972 | 1 Samsung | 1 Flow | 2026-06-17 | N/A | 6.2 MEDIUM |
| Improper verification of intent by broadcast receiver in Samsung Flow prior to version 4.9.17.6 allows local attackers to modify Samsung Flow configuration. | |||||
| CVE-2025-20971 | 1 Samsung | 1 Flow | 2026-06-17 | N/A | 5.5 MEDIUM |
| Improper input validation in Samsung Flow prior to version 4.9.17.6 allows local attackers to access data within Samsung Flow. | |||||
| CVE-2025-20970 | 2026-06-17 | N/A | 6.2 MEDIUM | ||
| Improper access control in Bixby Vision prior to version 3.8.1 in Android 13, 3.8.3 in Android 14, 3.8.21 in Android 15 allows local attackers to access image files with Bixby Vision privilege. | |||||
| CVE-2025-20969 | 1 Samsung | 2 Android, Gallery | 2026-06-17 | N/A | 5.5 MEDIUM |
| Improper input validation in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows local attackers to access data within Samsung Gallery. | |||||
| CVE-2025-20968 | 1 Samsung | 2 Android, Gallery | 2026-06-17 | N/A | 7.2 HIGH |
| Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows remote attackers to access data and perform internal operations within Samsung Gallery. | |||||
| CVE-2025-20967 | 1 Samsung | 2 Android, Gallery | 2026-06-17 | N/A | 5.1 MEDIUM |
| Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows attackers to read and write arbitrary file with the privilege of Samsung Gallery. | |||||
