CVE-2026-21020
Improper export of android application components in OmaCP prior to SMR May-2026 Release 1 allows local attackers to trigger privileged functions.
- Samsung Android
- = 14.0, 15.0, 16.0
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 0.1% (1th percentile)
- NVD status
- Analyzed
- Published
- 2026-05-13
CVE-2026-21020 at NVD
2 known exploits for CVE-2026-21020
Proof-of-concept code and exploit modules indexed by Sploitus