Improper Export of Application Components in UwbTest by Samsung Mobile
CVE-2026-20972
4.8MEDIUM
What is CVE-2026-20972?
The UwbTest application developed by Samsung Mobile is vulnerable to local attacks due to the improper export of application components. This flaw allows unauthorized users to exploit the system’s functionality, specifically enabling Ultra Wideband (UWB) features without permission. The vulnerability affects versions of the app released prior to the SMR Jan-2026 Release 1, making it crucial for users to update to avoid potential security risks.
Affected Version(s)
Samsung Mobile Devices SMR Jan-2026 Release in Android 13, 14, 15, 16