CVE-2023-21444: Samsung Flow

High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Improper cryptographic implementation in Samsung Flow for PC 4.9.14.0 allows adjacent attackers to decrypt encrypted messages or inject commands.

Affected products

  • Samsung Flow: before 4.9.14.0 (fixed in 4.9.14.0)

Published 2023-02-09. Last modified 2026-06-17.