7.5
CVSSv3

CVE-2023-42581

Published: 05/12/2023 Updated: 12/12/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Improper URL validation from InstantPlay deeplink in Galaxy Store prior to version 4.5.64.4 allows malicious users to execute JavaScript API to access data.

Vulnerable Product Search on Vulmon Subscribe to Product

samsung galaxy store