Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2663▼ 380 respecto a la semana anterior
Críticas / altas1289▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 274 respecto a la semana anterior
16 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (8.6) | 0.16% | — | Samsung Galaxy WatchAI | 13/5/2026 | 17/6/2026 | Improper input validation in FacAtFunction in Galaxy Watch prior to SMR May-2026 Release 1 allows local attacker to execute arbitrary code with system privilege. | |
| Aplazada | Baja (3.3) | 0.12% | — | Samsung Galaxy WatchAIGoogle Android WatchAI | 6/8/2025 | 17/6/2026 | Improper access control in WcsExtension for Galaxy Watch prior to Android Watch 16 allows local attackers to access sensitive information. | |
| Aplazada | Media (6.2) | 0.14% | — | Samsung Galaxy WatchAI | 6/8/2025 | 17/6/2026 | Improper access control in SemSensorManager for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to access sensitive information related to outdoor exercise and sleep time. | |
| Aplazada | Media (5.5) | 0.12% | — | Samsung Galaxy WatchAI | 6/8/2025 | 17/6/2026 | Improper access control in fall detection for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to modify fall detection configuration. | |
| Aplazada | Media (5.5) | 0.13% | — | Samsung Galaxy WatchAI | 6/8/2025 | 17/6/2026 | Improper access control in SemSensorService for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to access sensitive information related to motion and body sensors. | |
| Aplazada | Media (5.5) | 0.15% | — | Samsung Galaxy WatchAI | 3/12/2024 | 17/6/2026 | Improper input validation in Settings prior to SMR Dec-2024 Release 1 allows local attackers to broadcast signal for discovering Bluetooth on Galaxy Watch. | |
| Modificada | Media (5.5) | 0.20% | — | Samsung Galaxy Watch Plugin | 9/9/2022 | 17/6/2026 | Improper restriction of broadcasting Intent in SaWebViewRelayActivity of?Waterplugin prior to version 2.2.11.22081151 allows attacker to access the file without permission. | |
| Modificada | Media (6.2) | 0.20% | — | Samsung Galaxy Watch Plugin | 9/9/2022 | 17/6/2026 | Improper Handling of Insufficient Permissions or Privileges vulnerability in Waterplugin prior to 2.2.11.22040751 allows attacker to access device IMEI and Serial number. | |
| Modificada | Media (6.5) | 0.23% | — | Samsung Galaxy Watch Plugin | 9/9/2022 | 17/6/2026 | Improper restriction of broadcasting Intent in GalaxyStoreBridgePageLinker of?Waterplugin prior to version 2.2.11.22081151 leaks MAC address of the connected Bluetooth device. | |
| Modificada | Baja (3.3) | 0.21% | — | Samsung Galaxy Watch 3 Plugin | 10/3/2022 | 17/6/2026 | Information Exposure vulnerability in Galaxy Watch3 Plugin prior to version 2.2.09.22012751 allows attacker to access password information of connected WiFiAp in the log | |
| Modificada | Baja (3.3) | 0.21% | — | Samsung Galaxy Watch Plugin | 10/3/2022 | 17/6/2026 | Information Exposure vulnerability in Galaxy Watch Plugin prior to version 2.2.05.22012751 allows attacker to access password information of connected WiFiAp in the log | |
| Modificada | Baja (3.3) | 0.21% | — | Samsung Galaxy Watch 3 Plugin | 10/3/2022 | 17/6/2026 | Information Exposure vulnerability in Galaxy S3 Plugin prior to version 2.2.03.22012751 allows attacker to access password information of connected WiFiAp in the log | |
| Modificada | Baja (3.3) | 0.21% | — | Samsung Galaxy Watch Plugin | 10/3/2022 | 17/6/2026 | Information Exposure vulnerability in Galaxy Watch Plugin prior to version 2.2.05.220126741 allows attackers to access user information in log. | |
| Modificada | Alta (8.8) | 0.44% | — | Samsung Galaxy Watch Active 2 FirmwareSamsung Galaxy Watch Active FirmwareSamsung Galaxy Watch FirmwareSamsung Galaxy Watch 3 Firmware+5 | 11/6/2021 | 17/6/2026 | Improper authentication vulnerability in Tizen bluetooth-frwk prior to Firmware update JUN-2021 Release allows bluetooth attacker to take over the user's bluetooth device without user awareness. | |
| Modificada | Media (5.5) | 0.24% | — | Samsung Galaxy Watch 3 Plugin | 11/6/2021 | 17/6/2026 | Improper log management vulnerability in Galaxy Watch3 PlugIn prior to version 2.2.09.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log. | |
| Modificada | Media (5.5) | 0.24% | — | Samsung Galaxy Watch Plugin | 11/6/2021 | 17/6/2026 | Improper log management vulnerability in Galaxy Watch PlugIn prior to version 2.2.05.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log. |