Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

flatpak — Vulnerabilities & Security Advisories 14

All 14 CVE vulnerabilities found in flatpak, with AI-generated Chinese analysis, references, and POCs.

Vendor: flatpak

CVE ID Title CVSS Severity Published
CVE-2026-96808 Flatpak 1.18.1前符号链接遍历致本地提权 CWE-61 7.4 High 2026-09-23
CVE-2026-96807 Flatpak 1.18.1前ld.so符号链接致任意文件写入 CWE-61 4.0 Medium 2026-09-23
CVE-2026-90616 Flatpak 后置链接漏洞 CWE-61 7.4 High 2026-09-12
CVE-2026-34079 Flatpak affected by arbitrary file deletion on the host filesystem CWE-22 7.1AI High AI 2026-04-07
CVE-2026-34078 Flatpak has a complete sandbox escape leading to host file access and code execution in the host context CWE-61 7.8AI High AI 2026-04-07
CVE-2024-42472 Flatpak may allow access to files outside sandbox for certain apps CWE-74 10.0 Critical 2024-08-15
CVE-2024-32462 Flatpak vulnerable to a sandbox escape via RequestBackground portal due to bad argument parsing CWE-88 8.4 High 2024-04-18
CVE-2023-28101 Flatpak metadata with ANSI control codes can cause misleading terminal output CWE-116 5.0 Medium 2023-03-16
CVE-2023-28100 TIOCLINUX can send commands outside sandbox if running on a virtual console CWE-20 10.0 Critical 2023-03-16
CVE-2022-21682 flatpak-builder can access files outside the build directory. CWE-22 7.7 High 2022-01-13
CVE-2021-43860 Permissions granted to applications can be hidden from the user at install time CWE-269 8.2 High 2022-01-12
CVE-2021-41133 Sandbox bypass via recent VFS-manipulating syscalls CWE-20 8.8 High 2021-10-08
CVE-2021-21381 Sandbox escape via special tokens in .desktop file CWE-74 7.1 High 2021-03-11
CVE-2021-21261 Flatpak sandbox escape via spawn portal CWE-74 7.3 High 2021-01-14

All 14 known CVE vulnerabilities affecting flatpak with full Chinese analysis, references, and POCs where available.