Samsung: CISA KEV History
Every Samsung vulnerability in the CISA Known Exploited Vulnerabilities catalog: confirmed in-the-wild exploitation, addition timeline, and ransomware linkage. Rebuilt automatically on every site deploy.
Snapshot: 2026-09-08 · Source: CISA KEV Catalog · Full KEV dashboard
KEV entries
15
Added, last 12 months
3
Ransomware-linked
0
Latest addition
2026-04-24
Samsung KEV additions per month, last 24 months
Most-listed products: Mobile Devices, MagicINFO 9 Server.
Latest 15 of 15 Samsung KEV entries
| CVE | Vulnerability | Added | Ransomware |
|---|---|---|---|
| CVE-2024-7399 | Samsung MagicINFO 9 Server Path Traversal Vulnerability | 2026-04-24 | No |
| CVE-2025-21042 | Samsung Mobile Devices Out-of-Bounds Write Vulnerability | 2025-11-10 | No |
| CVE-2025-21043 | Samsung Mobile Devices Out-of-Bounds Write Vulnerability | 2025-10-02 | No |
| CVE-2025-4632 | Samsung MagicINFO 9 Server Path Traversal Vulnerability | 2025-05-22 | No |
| CVE-2022-22265 | Samsung Mobile Devices Use-After-Free Vulnerability | 2023-09-18 | No |
| CVE-2021-25487 | Samsung Mobile Devices Out-of-Bounds Read Vulnerability | 2023-06-29 | No |
| CVE-2021-25489 | Samsung Mobile Devices Improper Input Validation Vulnerability | 2023-06-29 | No |
| CVE-2021-25394 | Samsung Mobile Devices Race Condition Vulnerability | 2023-06-29 | No |
| CVE-2021-25395 | Samsung Mobile Devices Race Condition Vulnerability | 2023-06-29 | No |
| CVE-2021-25371 | Samsung Mobile Devices Unspecified Vulnerability | 2023-06-29 | No |
| CVE-2021-25372 | Samsung Mobile Devices Improper Boundary Check Vulnerability | 2023-06-29 | No |
| CVE-2023-21492 | Samsung Mobile Devices Insertion of Sensitive Information Into Log File Vulnerability | 2023-05-19 | No |
| CVE-2021-25337 | Samsung Mobile Devices Improper Access Control Vulnerability | 2022-11-08 | No |
| CVE-2021-25369 | Samsung Mobile Devices Improper Access Control Vulnerability | 2022-11-08 | No |
| CVE-2021-25370 | Samsung Mobile Devices Memory Corruption Vulnerability | 2022-11-08 | No |
CVE links go to our explainer when one exists, otherwise to the NVD record.
Data: official CISA KEV catalog, fetched at build time. Figures may be reused with attribution to East Bay Cyber and CISA. See also the KEV Velocity Dashboard and all tracked vendors.