CVE-2026-21106: Samsung Mobile Samsung Cloud Assistant
Medium severity, CVSS 5.1. EPSS: 0.1% chance of exploitation in the next 30 days.
Improper verification of intent by broadcast receiver in Samsung Cloud Assistant prior to version 9.0.5 allows local attackers to disable enhanced data protection settings.
Affected products
- Samsung Mobile Samsung Cloud Assistant: before 9.0.5 (fixed in 9.0.5)
Published 2026-09-09. Last modified 2026-09-10.