Improper URL validation from InstantPlay deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute JavaScript API to access data.
2023-12-05T03:15:19.293
2024-11-21T08:22:50.090
Modified
CVSSv3.1: 7.5 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | samsung | galaxy_store | < 4.5.64.4 | Yes |