High severity7.1NVD Advisory· Published Aug 10, 2026· Updated Aug 19, 2026
CVE-2026-21059
CVE-2026-21059
Description
Improper export of android application components in Samsung Contacts prior to SMR Aug-2026 Release 1 allows local attackers to delete file with Samsung Contacts' privilege.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
14cpe:2.3:o:samsung:android:16.0:-:*:*:*:*:*:*+ 12 more
- cpe:2.3:o:samsung:android:16.0:-:*:*:*:*:*:*
- cpe:2.3:o:samsung:android:16.0:smr-apr-2026-r1:*:*:*:*:*:*
- cpe:2.3:o:samsung:android:16.0:smr-aug-2025-r1:*:*:*:*:*:*
- cpe:2.3:o:samsung:android:16.0:smr-dec-2025-r1:*:*:*:*:*:*
- cpe:2.3:o:samsung:android:16.0:smr-feb-2026-r1:*:*:*:*:*:*
- cpe:2.3:o:samsung:android:16.0:smr-jan-2026-r1:*:*:*:*:*:*
- cpe:2.3:o:samsung:android:16.0:smr-jul-2026-r1:*:*:*:*:*:*
- cpe:2.3:o:samsung:android:16.0:smr-jun-2026-r1:*:*:*:*:*:*
- cpe:2.3:o:samsung:android:16.0:smr-mar-2026-r1:*:*:*:*:*:*
- cpe:2.3:o:samsung:android:16.0:smr-may-2026-r1:*:*:*:*:*:*
- cpe:2.3:o:samsung:android:16.0:smr-nov-2025-r1:*:*:*:*:*:*
- cpe:2.3:o:samsung:android:16.0:smr-oct-2025-r1:*:*:*:*:*:*
- cpe:2.3:o:samsung:android:16.0:smr-sep-2025-r1:*:*:*:*:*:*
- Range: < SMR Aug-2026 Release 1
Patches
Vulnerability mechanics
References
1- security.samsungmobile.com/securityUpdate.smsbnvdVendor Advisory
News mentions
1- Samsung Mobile: 23 Vulnerabilities Disclosed in August 2026 Patch BatchVypr Intelligence · Aug 12, 2026