smart_switch vulnerabilities
CVEs whose affected-version data names the smart_switch package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2025-21064High· 8.8Improper authentication in Smart Switch prior to version 3.7.66.6 allows adjacent attackers to access transferring data.
Improper authentication in Smart Switch prior to version 3.7.66.6 allows adjacent attackers to access transferring data.
▾ Twilightsamsung · smart_switchEPSS 0.27%via NVD
CVE-2025-21060Medium· 5.5Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access backup data from applications
Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access backup data from applications. User interaction is required for triggering this vulnerability.
▾ Sunlitsamsung · smart_switchEPSS 0.10%via NVD