Low CVSS: 3.3 CVE-2025-21077 Improper input validation in Samsung Email prior to version 6.2.06.0 allows local attackers to launch arbitrary activity with Samsung Email privilege.
Medium CVSS: 4.6 CVE-2025-20894 Improper access control in Samsung Email prior to version 6.1.97.1 allows physical attackers to access data across multiple user profiles.