Samsung · Samsung Mobile Devices · CVE-2026-20988
**Name of the Vulnerable Software and Affected Versions**
Settings versions prior to SMR Mar-2026 Release 1
**Description**
A flaw exists in the Settings application due to improper verification of intent by a broadcast receiver. This allows a local attacker to launch arbitrary activity with Settings privileges. User interaction is required to trigger this issue.
**Recommendations**
Update to SMR Mar-2026 Release 1 or later.