CVE-2023-21443: Samsung Flow
High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.
Improper cryptographic implementation in Samsung Flow for Android prior to version 4.9.04 allows adjacent attackers to decrypt encrypted messages or inject commands.
Affected products
- Samsung Flow: before 4.9.04 (fixed in 4.9.04)
Published 2023-02-09. Last modified 2026-06-17.