CVE-2025-20973: Samsung Mobile Secure Folder

Medium severity, CVSS 5.4. EPSS: 0.2% chance of exploitation in the next 30 days.

Improper authentication in Secure Folder prior to version 1.8.12.0 in Android 13, and 1.9.21.00 in Android 14 allows physical attackers to reset the lock type of Secure Folder.

Affected products

Published 2025-05-07. Last modified 2026-06-17.