Improper Export Vulnerability in Samsung's Android Application Components
CVE-2026-21027
4.8MEDIUM
What is CVE-2026-21027?
A vulnerability has been identified in Samsung's ImsSettings, where improper export of Android application components prior to SMR Jun-2026 Release 1 can allow local attackers to exploit the logging function. This flaw poses a risk as it may enable unauthorized access to sensitive information, potentially compromising the security of the application.
Affected Version(s)
Samsung Mobile Devices SMR Jun-2026 Release in Android 14, 15, 16