CVE-2025-21019: Samsung Health
Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.
Improper authorization in Samsung Health prior to version 6.30.1.003 allows local attackers to access data in Samsung Health. User interaction is required for triggering this vulnerability.
Affected products
- Samsung Health: before 6.30.1.003 (fixed in 6.30.1.003)
Published 2025-08-06. Last modified 2026-06-17.