High severity7.5NVD Advisory· Published May 26, 2023· Updated Jun 17, 2026
CVE-2023-21515
CVE-2023-21515
Description
InstantPlay which included vulnerable script which could execute javascript in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:samsung:galaxy_store:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:samsung:galaxy_store:*:*:*:*:*:*:*:*range: <4.5.49.8
- (no CPE)range: <4.5.49.8
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
1- security.samsungmobile.com/serviceWeb.smsbnvdVendor Advisory
News mentions
0No linked articles in our index yet.