CVE-2026-21014: Samsung Camera

Low severity, CVSS 2.8. EPSS: 0.1% chance of exploitation in the next 30 days.

Improper access control in Samsung Camera prior to version 16.5.00.28 allows local attacker to access location data. User interaction is required for triggering this vulnerability.

Affected products

  • Samsung Camera: before 16.5.00.28 (fixed in 16.5.00.28)

Published 2026-04-13. Last modified 2026-06-17.