CVE-2026-21000 to CVE-2026-21999
67 CVEs with public proof-of-concept exploits.
- CVE-2026-210011 PoCPath traversal in Galaxy Store prior to version 4.6.03.8 allows local attacker to create file with Galaxy Store privilege.
- CVE-2026-210021 PoCImproper verification of cryptographic signature in Galaxy Store prior to version 4.6.03.8 allows local attacker to install arbitrary…
- CVE-2026-210031 PoCImproper input validation in data related to network restrictions prior to SMR Apr-2026 Release 1 allows physical attackers to bypass the…
- CVE-2026-210041 PoCImproper authentication in Smart Switch prior to version 3.7.69.15 allows adjacent attackers to trigger a denial of service.
- CVE-2026-210051 PoCPath traversal in Smart Switch prior to version 3.7.69.15 allows adjacent attackers to overwrite arbitrary files with Smart Switch…
- CVE-2026-210061 PoCImproper access control in Samsung DeX prior to SMR Apr-2026 Release 1 allows physical attackers to access to hidden notification contents.
- CVE-2026-210071 PoCImproper check for exceptional conditions in Device Care prior to SMR Apr-2026 Release 1 allows physical attackers to bypass Knox Guard.
- CVE-2026-210081 PoCExposure of sensitive information in S Share prior to SMR Apr-2026 Release 1 allows adjacent attacker to access sensitive information.
- CVE-2026-210091 PoCImproper check for exceptional conditions in Recents prior to SMR Apr-2026 Release 1 allows physical attacker to bypass App Pinning.
- CVE-2026-210101 PoCImproper input validation in Retail Mode prior to SMR Apr-2026 Release 1 allows local attackers to trigger privileged functions.
- CVE-2026-210111 PoCIncorrect privilege assignment in Bluetooth in Maintenance mode prior to SMR Apr-2026 Release 1 allows physical attackers to bypass Extend…
- CVE-2026-210121 PoCExternal control of file name in AODManager prior to SMR Apr-2026 Release 1 allows privileged local attacker to create file with system…
- CVE-2026-210131 PoCIncorrect default permission in Galaxy Wearable prior to version 2.2.68.26 allows local attackers to access sensitive information.
- CVE-2026-210141 PoCImproper access control in Samsung Camera prior to version 16.5.00.28 allows local attacker to access location data. User interaction is…
- CVE-2026-210151 PoCIncorrect default permissions in FactoryCamera prior to SMR May-2026 Release 1 allows local attacker to access unique identifier.
- CVE-2026-210161 PoCIncorrect privilege assignment in LocationManager prior to SMR May-2026 Release 1 allows local attackers to access sensitive information.
- CVE-2026-210171 PoCImproper handling of insufficient privileges in SecTelephonyProvider prior to SMR Jun-2026 Release 1 allows local attackers to access…
- CVE-2026-210182 PoCsOut-of-bounds write in SveService prior to SMR May-2026 Release 1 allows local privileged attackers to execute arbitrary code.
- CVE-2026-210191 PoCImproper input validation in FacAtFunction in Galaxy Watch prior to SMR May-2026 Release 1 allows local attacker to execute arbitrary code…
- CVE-2026-210201 PoCImproper export of android application components in OmaCP prior to SMR May-2026 Release 1 allows local attackers to trigger privileged…
- CVE-2026-210451 PoCOut-of-bounds write in parsing TIFF format in libimagecodec.media.quram.so prior to SMR Jul-2026 Release 1 allows remote attackers to…
- CVE-2026-210481 PoCOut-of-bounds write in parsing DNG format in libimagecodec.media.quram.so prior to SMR Jul-2026 Release 1 allows remote attackers to write…
- CVE-2026-210551 PoCImproper export of android application components in Bixby prior to version 4.0.70.8 allows local attackers to execute arbitrary commands…
- CVE-2026-212441 PoCWindows Hyper-V Remote Code Execution Vulnerability
- CVE-2026-212481 PoCWindows Hyper-V Remote Code Execution Vulnerability
- CVE-2026-212503 PoCsWindows HTTP.sys Elevation of Privilege Vulnerability
- CVE-2026-214361 PoCeopkg has Path Traversal: '../filedir' vulnerability
- CVE-2026-214371 PoCeopkg vulnerable to package file list integrity bypass
- CVE-2026-214404 PoCsAdonisJS Path Traversal in Multipart File Handling
- CVE-2026-214453 PoCsLangflow Missing Authentication on Critical API Endpoints
- CVE-2026-214471 PoCBagisto has IDOR in Customer Order Reorder Functionality
- CVE-2026-214511 PoCBagisto has HTML Filter Bypass that Enables Stored XSS
- CVE-2026-214831 PoClistmonk Vulnerable to Stored XSS Leading to Admin Account Takeover
- CVE-2026-214841 PoCAnythingLLM Vulnerable to Username Enumeration w/ Password Recovery
- CVE-2026-215081 PoCWindows Storage Elevation of Privilege Vulnerability
- CVE-2026-215097 PoCsKEVMicrosoft Office Security Feature Bypass Vulnerability
- CVE-2026-215103 PoCsKEVWindows Shell Security Feature Bypass Vulnerability
- CVE-2026-215141 PoCKEVMicrosoft Word Security Feature Bypass Vulnerability
- CVE-2026-215311 PoCAzure SDK for Python Remote Code Execution Vulnerability
- CVE-2026-216271 PoCExtension - tassos.gr - SQL injection and Unauthenticated File Read in Novarain/Tassos Framework v4.10.14 – v6.0.37 for Joomla
- CVE-2026-216281 PoCExtension - astroidframe.work - Unauthenticated Remote Code Execution in Astroid Framework 2.0.0 - 3.3.10 for Joomla
- CVE-2026-216361 PoCA flaw in Node.js's permission model allows Unix Domain Socket (UDS) connections to bypass network restrictions when `--permission` is…
- CVE-2026-216434 PoCsKEVAn improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.4 may…
- CVE-2026-217101 PoCA flaw in Node.js HTTP request handling causes an uncaught `TypeError` when a request is received with a header named `__proto__` and the…
- CVE-2026-217171 PoCA flaw in V8's string hashing mechanism causes integer-like strings to be hashed to their numeric value, making hash collisions trivially…
- CVE-2026-217211 PoCDashboard Permissions Scope Bypass Enables Cross‑Dashboard Privilege Escalation
- CVE-2026-218511 PoCMONAI has Path Traversal (Zip Slip) in NGC Private Bundle Download
- CVE-2026-218521 PoCClaude Code Leaks Data via Malicious Environment Configuration Before Trust Confirmation
- CVE-2026-218572 PoCsRedaxo has Path Traversal in Backup Addon Leading to Arbitrary File Read
- CVE-2026-2185820 PoCsn8n Vulnerable to Unauthenticated File Access via Improper Webhook Request Handling
- CVE-2026-218592 PoCsMailpit Proxy Endpoint is Vulnerable to Server-Side Request Forgery (SSRF)
- CVE-2026-218621 PoCRustFS sourceIp bypass via spoofed X-Forwarded-For/Real-IP headers
- CVE-2026-218711 PoCNiceGUI is vulnerable to XSS via Unescaped URL in ui.navigate.history.push() / replace()
- CVE-2026-218721 PoCNiceGUI apps are vulnerable to XSS which uses `ui.sub_pages` and render arbitrary user-provided links
- CVE-2026-218731 PoCZero-click XSS in all NiceGUI apps which uses `ui.sub_pages`
- CVE-2026-218741 PoCNiceGUI has Redis connection leak via tab storage causes service degradation
- CVE-2026-218764 PoCsOWASP CRS has multipart bypass using multiple content-type parts
- CVE-2026-218773 PoCsn8n is vulnerable to Remote Code Execution via Arbitrary File Write
- CVE-2026-218821 PoCtheshit's Improper Privilege Dropping Allows Local Privilege Escalation via Command Re-execution
- CVE-2026-218851 PoCMiniflux Media Proxy SSRF via /proxy endpoint allows access to internal network resources
- CVE-2026-218911 PoCZimaOS has Authentication Bypass via System-Level Username
- CVE-2026-219021 PoCJunos OS Evolved: PTX Series: A vulnerability allows a unauthenticated, network-based attacker to execute code as root
- CVE-2026-219551 PoCVulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are…
- CVE-2026-219628 PoCsKEVVulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: Weblogic…
- CVE-2026-219781 PoCVulnerability in the Oracle FLEXCUBE Universal Banking product of Oracle Financial Services Applications (component: Relationship…
- CVE-2026-219861 PoCVulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are…
- CVE-2026-219941 PoCVulnerability in the Oracle Edge Cloud Infrastructure Designer and Visualisation Toolkit product of Oracle Open Source Projects…