📦 Galaxy Store

by Samsung

🔍 What is Galaxy Store?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2026-20976

HIGH CVSS 7.8 Jan 9, 2026

An improper input validation vulnerability in Galaxy Store allows local attackers to execute arbitrary scripts on affected devices. This affects Samsung Galaxy devices running Galaxy Store versions pr...

CVE-2023-42580

HIGH CVSS 7.5 Dec 5, 2023

This vulnerability in Samsung Galaxy Store allows attackers to bypass URL validation in MCSLaunch deeplinks, enabling them to execute JavaScript APIs that can install APK files without user consent. I...

CVE-2023-21514

HIGH CVSS 7.5 May 26, 2023

This vulnerability in Samsung Galaxy Store allows attackers to bypass scheme validation in InstantPlay Deeplink functionality, enabling them to execute JavaScript APIs that can install APK files witho...

CVE-2023-21516

HIGH CVSS 7.5 May 26, 2023

A cross-site scripting (XSS) vulnerability in Samsung Galaxy Store's InstantPlay feature allows attackers to execute JavaScript that can trigger APK installations from the store. This affects Galaxy S...

CVE-2023-21433

HIGH CVSS 7.8 Feb 9, 2023

This vulnerability allows local attackers to bypass Galaxy Store's access controls and install applications without proper authorization. It affects Samsung Galaxy devices with Galaxy Store versions p...

CVE-2022-33708

HIGH CVSS 7.8 Jul 12, 2022

This vulnerability allows local attackers to launch activities with Galaxy Store privileges due to improper input validation in AppsPackageInstaller. It affects Samsung Galaxy devices running Galaxy S...

CVE-2022-33710

HIGH CVSS 7.8 Jul 12, 2022

This vulnerability allows local attackers to launch activities with Galaxy Store privileges through improper input validation in BillingPackageInstaller. It affects Samsung Galaxy Store versions prior...

CVE-2022-22288

HIGH CVSS 7.5 Jan 10, 2022

This vulnerability in Samsung Galaxy Store allows remote attackers to install unauthorized apps by bypassing authorization checks. It affects Samsung Galaxy devices using Galaxy Store versions prior t...

CVE-2021-25499

HIGH CVSS 7.1 Oct 6, 2021

This vulnerability allows attackers to redirect intents in Samsung's Galaxy Store app, potentially accessing its content provider. This affects Samsung Galaxy devices running Galaxy Store versions pri...

CVE-2023-21483

MEDIUM CVSS 6.4 Sep 3, 2025

An improper access control vulnerability in Samsung Galaxy Store allows local attackers to access protected data through an exported service. This affects Samsung Galaxy devices running Galaxy Store v...

CVE-2025-20951

MEDIUM CVSS 5.1 Apr 8, 2025

This vulnerability in Galaxy Store allows local attackers to write arbitrary files with Galaxy Store's privileges due to improper intent verification by a broadcast receiver. It affects Samsung Galaxy...

CVE-2024-20870

MEDIUM CVSS 5.1 May 7, 2024

This vulnerability in Galaxy Store allows local attackers to write arbitrary files with Galaxy Store's privileges due to improper intent verification in a broadcast receiver. It affects Samsung Galaxy...