CVE-2026-21113: Samsung Visual Voicemail

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

Improper export of android application components in Visual Voicemail prior to version 20.1.00.05 allows local attackers to initiate call without proper permission.

Affected products

  • Samsung Visual Voicemail: before 20.1.00.05 (fixed in 20.1.00.05)

Published 2026-09-09. Last modified 2026-09-23.