CVE-2026-21029
Improper Component Export in Galaxy Editing Service
Publication date: 2026-06-05
Last updated on: 2026-06-05
Assigner: Samsung Mobile
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| samsung | galaxy_editing_service | to 2026-06-01 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability involves the improper export of Android application components in the Galaxy Editing Service before the SMR Jun-2026 Release 1. Because of this misconfiguration, a local attacker can execute privileged operations that they normally should not have access to.
How can this vulnerability impact me? :
The impact of this vulnerability is that a local attacker could perform privileged operations on the affected device. This could lead to unauthorized actions being taken within the Galaxy Editing Service, potentially compromising the security or integrity of the device or its data.