Improper Export of Application Components in UwbTest by Samsung Mobile
CVE-2026-20972

4.8MEDIUM

Key Information:

Vendor

Samsung

Vendor
CVE Published:
9 January 2026

What is CVE-2026-20972?

The UwbTest application developed by Samsung Mobile is vulnerable to local attacks due to the improper export of application components. This flaw allows unauthorized users to exploit the system’s functionality, specifically enabling Ultra Wideband (UWB) features without permission. The vulnerability affects versions of the app released prior to the SMR Jan-2026 Release 1, making it crucial for users to update to avoid potential security risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Samsung Mobile Devices SMR Jan-2026 Release in Android 13, 14, 15, 16

References

CVSS V4

Score:
4.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.