CVE-2026-21031
HIGH WAF: Low
CVSS 7.8
Published: 2026-06-05
CWE-863
Improper authorization in AppBlock prior to SMR Jun-2026 Release 1 allows local attacker to launch arbitrary activity. User interaction is required for triggering this vulnerability.
WAF Coverage Analysis
Incorrect Authorization
Low WAF Coverage
OWASP: A01:2021 Broken Access Control
Affected Software
| Vendor | Product | Version |
|---|---|---|
| samsung | android | 15.0 |
| samsung | android | 15.0 |
| samsung | android | 15.0 |
| samsung | android | 15.0 |
| samsung | android | 15.0 |
| samsung | android | 15.0 |
| samsung | android | 15.0 |
| samsung | android | 15.0 |
| samsung | android | 15.0 |
| samsung | android | 15.0 |
References
- security.samsungmobile.com (Vendor Advisory)