Vulnerability Details CVE-2026-21097
Improper authentication in ActivityTaskManagerService prior to SMR Sep-2026 Release 1 allows local privileged attackers to launch arbitrary activity.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 2.8%
CVSS Severity
CVSS v3 Score 6.7
Products affected by CVE-2026-21097
-
cpe:2.3:o:samsung:android:14.0
-
cpe:2.3:o:samsung:android:15.0
-
cpe:2.3:o:samsung:android:16.0
-
cpe:2.3:o:samsung:android:17.0