CVE-2025-21023: Samsung Mobile Wcsextension For Galaxy Watch

Low severity, CVSS 3.3. EPSS: 0.1% chance of exploitation in the next 30 days.

Improper access control in WcsExtension for Galaxy Watch prior to Android Watch 16 allows local attackers to access sensitive information.

Affected products

Published 2025-08-06. Last modified 2026-06-17.