Members
This hub aggregates every CVE we track for Members. Use it to gauge the current risk picture and drill into individual advisories.
other
14
CVEs tracked
0
Critical
4
High
0
In CISA KEV
Severity distribution
MEDIUM8HIGH4LOW2
Monthly trend
0
0
0
0
0
1
0
0
1
0
0
0
0
0
1
0
0
2
0
0
0
1
0
0
2024-092026-08
Latest CVEs
The 14 most recently published vulnerabilities affecting Members.
- CVE-2026-21037Improper input validation in Samsung Members prior to version 5.8.01.5 allows local attackers to access arbitrary URL and launch arbitrary activity with Samsung Members privilege.7.1
- CVE-2026-20986Path traversal in Samsung Members prior to Chinese version 15.5.05.4 allows local attackers to overwrite data within Samsung Members.5.5
- CVE-2026-20985Improper input validation in Samsung Members prior to version 5.6.00.11 allows remote attackers to connect arbitrary URL and launch arbitrary activity with Samsung Members privilege. User interacti...4.3
- CVE-2025-21079Improper input validation in Samsung Members prior to version 5.5.01.3 allows remote attackers to connect arbitrary URL and launch arbitrary activity with Samsung Members privilege. User interactio...7.1
- CVE-2025-20949Path traversal vulnerability in Samsung Members prior to version 5.0.00.11 allows attackers to read and write arbitrary file with the privilege of Samsung Members.5.1
- CVE-2025-20898Improper input validation in Samsung Members prior to version 5.2.00.12 allows physical attackers to access data across multiple user profiles.4.6
- CVE-2023-30703Improper URL validation vulnerability in Samsung Members prior to version 14.0.07.1 allows attackers to access sensitive information.3.3
- CVE-2022-30748Unprotected dynamic receiver in Samsung Members prior to version 4.2.005 allows attacker to launch arbitrary activity.4.0
- CVE-2022-28777Improper access control vulnerability in Samsung Members prior to version 13.6.08.5 allows local attacker to execute call function without CALL_PHONE permission.4.3
- CVE-2021-25439Improper access control vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to cause ar...3.3
- CVE-2021-25438Improper access control vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to cause lo...7.8
- CVE-2021-25374An improper authorization vulnerability in Samsung Members "samsungrewards" scheme for deeplink in versions 2.4.83.9 in Android O(8.1) and below, and 3.9.00.9 in Android P(9.0) and above allows rem...8.6
- CVE-2021-25343Calling of non-existent provider in Samsung Members prior to version 2.4.81.13 (in Android O(8.1) and below) and 3.8.00.13 (in Android P(9.0) and above) allows unauthorized actions including denial...4.0
- CVE-2021-25342Calling of non-existent provider in SMP sdk prior to version 3.0.9 allows unauthorized actions including denial of service attack by hijacking the provider.4.0
Product normalization is registry-driven with AI assist and human review. How it works