CVE-2025-58486: Samsung Account

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

Improper input validation in Samsung Account prior to version 15.5.01.1 allows local attacker to execute arbitrary script.

Affected products

  • Samsung Account: before 15.5.01.1 (fixed in 15.5.01.1)

Published 2025-12-02. Last modified 2026-09-26.