VendorsSamsunginternetany version
Vulnerabilities

Samsung Internet any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

27CVEs
CVE-2021-25400
Intent redirection vulnerability in Samsung Internet prior to version 14.0.1.20 allows attacker to execute privileged action.
Published 2021-06-11 · Modified
7.8EPSS 0.002
CVE-2021-25418
Improper component protection vulnerability in Samsung Internet prior to version 14.0.1.62 allows untrusted applications to execute arbitrary activity in specific condition.
Published 2021-06-11 · Modified
7.8EPSS 0.002
CVE-2024-20838
Improper validation vulnerability in Samsung Internet prior to version 24.0.3.2 allows local attackers to execute arbitrary code.
Published 2024-03-05 · Analyzed
7.8EPSS 0.002
CVE-2025-20995
Improper handling of insufficient permission in ClientProvider in Samsung Internet installed on non-Samsung Device prior to version 28.0.0.59 allows local attackers to read and write arbitrary files.
Published 2025-06-04 · Analyzed
7.1EPSS 0.001
CVE-2025-20994
Improper handling of insufficient permission in SyncClientProvider in Samsung Internet installed on non-Samsung Device prior to version 28.0.0.59 allows local attackers to access read and write arbitrary files.
Published 2025-06-04 · Analyzed
7.1EPSS 0.001
CVE-2021-25354
Improper input check in Samsung Internet prior to version 13.2.1.46 allows attackers to launch non-exported activity in Samsung Browser via malicious deeplink.
Published 2021-03-25 · Modified
6.8EPSS 0.005
CVE-2022-22290
Incorrect download source UI in Downloads in Samsung Internet prior to 16.0.6.23 allows attackers to perform domain spoofing via a crafted HTML page.
Published 2022-01-14 · Modified
6.5EPSS 0.008
CVE-2021-25466
Improper scheme check vulnerability in Samsung Internet prior to version 15.0.2.47 allows attackers to perform Man-in-the-middle attack and obtain Samsung Account token.
Published 2021-09-09 · Modified
6.5EPSS 0.008
CVE-2021-25419
Non-compliance of recommended secure coding scheme in Samsung Internet prior to version 14.0.1.62 allows attackers to display fake URL in address bar via phising URL link.
Published 2021-06-11 · Modified
6.5EPSS 0.008
CVE-2023-30674
Improper configuration in Samsung Internet prior to version 21.0.0.41 allows attacker to bypass SameSite Cookie.
Published 2023-07-06 · Modified
6.5EPSS 0.006
CVE-2026-21036
Improper authorization in Samsung Internet prior to version 30.0.0.39 allows local attackers to access sensitive information.
Published 2026-06-05 · Analyzed
6.3EPSS 0.001
CVE-2021-25520
Insecure caller check and input validation vulnerabilities in SearchKeyword deeplink logic prior to Samsung Internet 16.0.2 allows unstrusted applications to execute script codes in Samsung Internet.
Published 2021-12-08 · Modified
6.1EPSS 0.004
CVE-2022-22284
Improper authentication vulnerability in Samsung Internet prior to 16.0.2.19 allows attackers to bypass secret mode password authentication
Published 2022-01-07 · Modified
5.7EPSS 0.002
CVE-2024-34671
Use of implicit intent for sensitive communication in translation혻in Samsung Internet prior to version 26.0.3.1 allows local attackers to get sensitive information. User interaction is required for triggering this vulnerability.
Published 2024-10-08 · Analyzed
5.5EPSS 0.002
CVE-2024-20869
Improper privilege management vulnerability in Samsung Internet prior to version 25.0.0.41 allows local attackers to bypass protection for cookies.
Published 2024-05-07 · Analyzed
5.5EPSS 0.001
CVE-2025-58485
Improper input validation in Samsung Internet prior to version 29.0.0.48 allows local attackers to inject arbitrary script.
Published 2025-12-02 · Analyzed
5.5EPSS 0.001
CVE-2021-25445
Unprotected component vulnerability in Samsung Internet prior to version 14.2 allows untrusted application to access internal files in Samsung Internet.
Published 2021-08-05 · Modified
5.3EPSS 0.008
CVE-2024-20837
Improper handling of granting permission for Trusted Web Activities in Samsung Internet prior to version 24.0.0.41 allows local attackers to grant permission to their own TWA WebApps without user interaction.
Published 2024-03-05 · Analyzed
5.3EPSS 0.001
CVE-2022-39873
Improper authorization vulnerability in Samsung Internet prior to version 18.0.4.14 allows physical attackers to add bookmarks in secret mode without user authentication.
Published 2022-10-07 · Modified
4.6EPSS 0.002
CVE-2024-20828
Improper authorization verification vulnerability in Samsung Internet prior to version 24.0 allows physical attackers to access files downloaded in SecretMode without proper authentication.
Published 2024-02-06 · Modified
4.6EPSS 0.002
CVE-2023-30704
Improper Authorization vulnerability in Samsung Internet prior to version 22.0.0.35 allows physical attacker access downloaded files in Secret Mode without user authentication.
Published 2023-08-10 · Modified
4.6EPSS 0.002
CVE-2022-27839
Improper authentication vulnerability in SecretMode in Samsung Internet prior to version 16.2.1 allows attackers to access bookmark tab without proper credentials.
Published 2022-04-11 · Modified
4.3EPSS 0.006
CVE-2022-30738
Improper check in Loader in Samsung Internet prior to 17.0.1.69 allows attackers to spoof address bar via executing script.
Published 2022-06-07 · Modified
4.3EPSS 0.005
CVE-2022-30740
Improper auto-fill algorithm in Samsung Internet prior to version 17.0.1.69 allows physical attackers to guess stored credit card numbers.
Published 2022-06-07 · Modified
4.3EPSS 0.002
CVE-2021-25521
Insecure caller check in sharevia deeplink logic prior to Samsung Internet 16.0.2 allows unstrusted applications to get current tab URL in Samsung Internet.
Published 2021-12-08 · Modified
4.0EPSS 0.002
CVE-2021-25366
Improper access control in Samsung Internet prior to version 13.2.1.70 allows physically proximate attackers to bypass the secret mode's authentication.
Published 2021-03-25 · Modified
3.6EPSS 0.003
CVE-2021-25348
Improper permission grant check in Samsung Internet prior to version 13.0.1.60 allows access to files in internal storage without authorized STORAGE permission.
Published 2021-03-04 · Modified
2.4EPSS 0.003