VulnSea

flatpak has 4 CVEs on record. 3 were published in the last 90 days. The busiest recent month was September 2026 with 3. The median CVSS is 7.4 (high), with 1 rated critical. The dominant weakness classes are CWE-61 (4) and CWE-59 (3).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
7.4
Publish → KEV
Last 90 days
3 prev 1

Weakness classes

Products

  • Flatpak 4
4
Total CVEs
1
Critical
0
CISA KEV
0
Exploited

flatpak vulnerabilities

CVEs affecting flatpak, newest first. Open any entry for full detail, references, and exploit status.

4 CVEsRSS

CVE-2026-96808High· 7.4
yesterday

In Flatpak before 1.18.1, the revokefs writer, used by the flatpak-system-helper to receive repository data from unprivileged callers, validated file paths by rejecting literal .

In Flatpak before 1.18.1, the revokefs writer, used by the flatpak-system-helper to receive repository data from unprivileged callers, validated file paths by rejecting literal .. components but did not prevent symlink traversal. A malic…

TwilightFlatpak · Flatpakvia NVD
CVE-2026-96807Medium· 4.0
yesterday

In Flatpak before 1.18.1, a malicious sandboxed app can replace ~/.var/app/$appid/.ld.so with a symlink, causing regenerate_ld_cache to write files at an arbitrary location

In Flatpak before 1.18.1, a malicious sandboxed app can replace ~/.var/app/$appid/.ld.so with a symlink, causing regenerate_ld_cache to write files at an arbitrary location. The filenames and content are not attacker controlled, making t…

SunlitFlatpak · Flatpakvia NVD
CVE-2026-90616High· 7.4
1w ago

In Flatpak before 1.18.1, a malicious sandboxed app can obtain arbitrary read and write access to files on the host, which can be escalated to arbitrary code execution on the host, a different vulnerability than CVE-2026-76925

In Flatpak before 1.18.1, a malicious sandboxed app can obtain arbitrary read and write access to files on the host, which can be escalated to arbitrary code execution on the host, a different vulnerability than CVE-2026-76925. Flatpak c…

TwilightFlatpak · FlatpakEPSS 0.17%via NVD
CVE-2026-34078Critical· 10.0
5mo ago

Flatpak is a Linux application sandboxing and distribution framework

Flatpak is a Linux application sandboxing and distribution framework. Prior to 1.16.4, the Flatpak portal accepts paths in the sandbox-expose options which can be app-controlled symlinks pointing at arbitrary paths. Flatpak run mounts th…

Midnightflatpak · flatpakEPSS 1.7%via NVD
flatpak vulnerabilities (CVEs) · VulnSea