Medium severity5.3NVD Advisory· Published Mar 5, 2024· Updated Jun 17, 2026
CVE-2024-20837
CVE-2024-20837
Description
Improper handling of granting permission for Trusted Web Activities in Samsung Internet prior to version 24.0.0.41 allows local attackers to grant permission to their own TWA WebApps without user interaction.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:samsung:internet:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:samsung:internet:*:*:*:*:*:*:*:*range: <24.0.0.41
- (no CPE)range: <24.0.0.41
- (no CPE)range: 24.0.0.41
Patches
Vulnerability mechanics
References
1- security.samsungmobile.com/serviceWeb.smsbnvdVendor Advisory
News mentions
0No linked articles in our index yet.