CVE-2025-58485: Samsung Internet

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

Improper input validation in Samsung Internet prior to version 29.0.0.48 allows local attackers to inject arbitrary script.

Affected products

  • Samsung Internet: before 29.0.0.48 (fixed in 29.0.0.48)

Published 2025-12-02. Last modified 2026-09-26.