Improper Access Control in SmartThings by Samsung
CVE-2026-21084
6.9MEDIUM
What is CVE-2026-21084?
An improper access control vulnerability exists in SmartThings prior to version 1.8.47.24, which allows local attackers the potential to gain unauthorized access to sensitive user information. This vulnerability poses a risk to data confidentiality and integrity, emphasizing the importance of updating to the latest version to mitigate associated risks.
Affected Version(s)
SmartThings 1.8.47.24