PT-2026-25599 · Samsung · Samsung Account

Published

2026-03-16

·

Updated

2026-03-16

·

CVE-2026-20994

CVSS v4.0
7.0
VectorAV:N/AC:L/AT:P/PR:N/UI:P/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N
URL redirection in Samsung Account prior to version 15.5.01.1 allows remote attackers to potentially get access token.

Fix

Related Identifiers

CVE-2026-20994

Affected Products

Samsung Account