CVE-2026-21084

Summary

Improper access control in SmartThings prior to version 1.8.47.24 allows local attackers to access sensitive information.

Affected Software

VendorProductVersion RangeStatus
Samsung MobileSmartThings1.8.47.24 < *unaffected

Weaknesses

  • CWE-284: Improper Access Control

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References