CVE-2025-21064: Samsung Smart Switch

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Improper authentication in Smart Switch prior to version 3.7.66.6 allows adjacent attackers to access transferring data.

Affected products

  • Samsung Smart Switch: before 3.7.67.2 (fixed in 3.7.67.2)

Published 2025-10-10. Last modified 2026-10-08.