CVE-2026-21063

Summary

Improper export of android application components in AppLock prior to SMR Aug-2026 Release 1 allows physical attackers to bypass app lock function.

Affected Software

VendorProductVersion RangeStatus
Samsung MobileSamsung Mobile DevicesSMR Aug-2026 Release in Android 14, 15, 16 < *unaffected

Weaknesses

  • CWE-926: Improper Export of Android Application Components

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References