CVE-2024-20828: Samsung Internet
Medium severity, CVSS 4.6. EPSS: 0.2% chance of exploitation in the next 30 days.
Improper authorization verification vulnerability in Samsung Internet prior to version 24.0 allows physical attackers to access files downloaded in SecretMode without proper authentication.
Affected products
- Samsung Internet: before 24.0 (fixed in 24.0)
Published 2024-02-06. Last modified 2026-06-17.