VYPR
High severity7.5NVD Advisory· Published May 26, 2023· Updated Jun 17, 2026

CVE-2023-21515

CVE-2023-21515

Description

InstantPlay which included vulnerable script which could execute javascript in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:samsung:galaxy_store:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:samsung:galaxy_store:*:*:*:*:*:*:*:*range: <4.5.49.8
    • (no CPE)range: <4.5.49.8
    • (no CPE)range: unspecified

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.