Brand
Samsung: actively exploited vulnerabilities
15 vulnerabilities in Samsung products (Mobile Devices (Galaxy), MagicINFO Server) are in CISA’s catalog of exploited vulnerabilities. Last added: April 24, 2026.
The brand’s general security advisories page, not the advisory for a specific vulnerability (address checked September 28, 2026).
-
2 vulnerabilities added in the last 12 months
-
15 exploited vulnerabilities in the catalog, in total
-
0 added in the last 30 days
By category
Add just one Samsung category to your radar, or open its page.
- Phones, tablets and chipsets 13 vulnerabilities
- ERP, business applications and databases 2 vulnerabilities
A high count also reflects how widely a product is deployed and how much attackers care about it: it is not a security rating.
Affected products
Follow a single Samsung product (Mobile Devices (Galaxy), MagicINFO Server…) rather than the whole brand.
- Mobile Devices (Galaxy)13 vulnerabilities, Phones and tablets
- MagicINFO Server2 vulnerabilities, Business apps and data
Name used by CISA: Samsung. Product families: indicative classification by this site.
Patch first
In the order of the main list (Patch first): recent additions first, then the most severe. The number is the rank within this Samsung list.
- Rank 1
Samsung MagicINFO ServerCVE-2024-7399
Samsung MagicINFO 9 Server Path Traversal Vulnerability
CVE from 2024, added in 2026
CVSS severity 9.8critical
Added Apr 24, 2026
- Rank 2
Samsung Mobile Devices (Galaxy)CVE-2025-21042
Samsung Mobile Devices Out-of-Bounds Write Vulnerability
CVSS severity 9.8critical
Added Nov 10, 2025
- Rank 3
Samsung Mobile Devices (Galaxy)CVE-2025-21043
Samsung Mobile Devices Out-of-Bounds Write Vulnerability
CVSS severity 9.8critical
Added Oct 2, 2025
- Rank 4
Samsung MagicINFO ServerCVE-2025-4632
Samsung MagicINFO 9 Server Path Traversal Vulnerability
CVSS severity 9.8critical
Added May 22, 2025
- Rank 5
Samsung Mobile Devices (Galaxy)CVE-2022-22265
Samsung Mobile Devices Use-After-Free Vulnerability
CVSS severity 7.8high
Added Sep 18, 2023
- Rank 6
Samsung Mobile Devices (Galaxy)CVE-2021-25487
Samsung Mobile Devices Out-of-Bounds Read Vulnerability
CVE from 2021, added in 2023
CVSS severity 7.8high
Added Jun 29, 2023
- Rank 7
Samsung Mobile Devices (Galaxy)CVE-2021-25337
Samsung Mobile Devices Improper Access Control Vulnerability
CVSS severity 7.1high
Added Nov 8, 2022
- Rank 8
Samsung Mobile Devices (Galaxy)CVE-2021-25371
Samsung Mobile Devices Unspecified Vulnerability
CVE from 2021, added in 2023
CVSS severity 6.7medium
Added Jun 29, 2023
- Rank 9
Samsung Mobile Devices (Galaxy)CVE-2021-25372
Samsung Mobile Devices Improper Boundary Check Vulnerability
CVE from 2021, added in 2023
CVSS severity 6.7medium
Added Jun 29, 2023
- Rank 10
Samsung Mobile Devices (Galaxy)CVE-2021-25394
Samsung Mobile Devices Race Condition Vulnerability
CVE from 2021, added in 2023
CVSS severity 6.4medium
Added Jun 29, 2023
Show 5 more vulnerabilities
- Rank 11
Samsung Mobile Devices (Galaxy)CVE-2021-25395
Samsung Mobile Devices Race Condition Vulnerability
CVE from 2021, added in 2023
CVSS severity 6.4medium
Added Jun 29, 2023
- Rank 12
Samsung Mobile Devices (Galaxy)CVE-2021-25489
Samsung Mobile Devices Improper Input Validation Vulnerability
CVE from 2021, added in 2023
CVSS severity 5.5medium
Added Jun 29, 2023
- Rank 13
Samsung Mobile Devices (Galaxy)CVE-2021-25369
Samsung Mobile Devices Improper Access Control Vulnerability
CVSS severity 5.5medium
Added Nov 8, 2022
- Rank 14
Samsung Mobile Devices (Galaxy)CVE-2023-21492
Samsung Mobile Devices Insertion of Sensitive Information Into Log File Vulnerability
CVSS severity 4.4medium
Added May 19, 2023
- Rank 15
Samsung Mobile Devices (Galaxy)CVE-2021-25370
Samsung Mobile Devices Memory Corruption Vulnerability
CVSS severity 4.4medium
Added Nov 8, 2022
Follow and verify
Get new Samsung vulnerabilities: RSS feed (add it to Outlook, Teams, Slack or your feed reader).
Indicative classification, based on the vendor and product names given by CISA. How products are classified.