| Bug | bookworm | trixie | forky | sid | Description |
|---|
| CVE-2026-97029 | vulnerable | fixed | fixed | fixed | Flatpak's process ID namespace separation does not prevent a sandboxed ... |
| CVE-2026-97027 | vulnerable | fixed | fixed | fixed | Flatpak passes through arbitrary vendor-extension keys unmodified when ... |
| CVE-2026-97026 | vulnerable | fixed | fixed | fixed | Flatpak creates temporary child repository directories under the user ... |
| CVE-2026-97025 | vulnerable | fixed | fixed | fixed | Flatpak writes the OCI repository authentication token with world-read ... |
| CVE-2026-97024 | vulnerable | fixed | fixed | fixed | A path traversal vulnerability in Flatpak's handling of the files/etc ... |
| CVE-2026-97023 | vulnerable | fixed | fixed | fixed | A path traversal vulnerability in Flatpak's handling of the export/bin ... |
| CVE-2026-96808 | vulnerable | fixed | fixed | fixed | In Flatpak before 1.18.1, the revokefs writer, used by the flatpak-sys ... |
| CVE-2026-96807 | vulnerable | fixed | fixed | fixed | In Flatpak before 1.18.1, a malicious sandboxed app can replace ~/.var ... |
| CVE-2026-96282 | vulnerable | fixed | fixed | fixed | A malicious Flatpak extension can probe the host filesystem to determi ... |
| CVE-2026-96281 | vulnerable | fixed | fixed | fixed | On a multi-user system, a user with an active local login session coul ... |
| CVE-2026-96280 | vulnerable | fixed | fixed | fixed | The OCI delta stream parser read sizes as guint64 but passed them to G ... |
| CVE-2026-96276 | vulnerable | fixed | fixed | fixed | If a malicious SDK container declares an extension point with a crafte ... |
| CVE-2026-96275 | vulnerable | fixed | fixed | fixed | A malicious or compromised Flatpak repository can write attacker-contr ... |
| CVE-2026-92162 | vulnerable | fixed | fixed | fixed | GHSA-v2gw-v9h5-9q4x |
| CVE-2026-90616 | vulnerable | fixed | fixed | fixed | In Flatpak before 1.18.1, a malicious sandboxed app can obtain arbitra ... |
| Bug | Description |
|---|
| CVE-2026-96284 | A malicious user can get read-access to files in the flatpak-system-he ... |
| CVE-2026-96283 | By calling org.freedesktop.Flatpak.SystemHelper.CancelPull on another ... |
| CVE-2026-96279 | A malicious OCI registry can hardlink arbitrary host files into the ex ... |
| CVE-2026-76925 | A flaw was found in Flatpak. A Time-of-check to time-of-use (TOCTOU) r ... |
| CVE-2026-34079 | Flatpak is a Linux application sandboxing and distribution framework. ... |
| CVE-2026-34078 | Flatpak is a Linux application sandboxing and distribution framework. ... |
| CVE-2024-42472 | Flatpak is a Linux application sandboxing and distribution framework. ... |
| CVE-2024-32462 | Flatpak is a system for building, distributing, and running sandboxed ... |
| CVE-2023-28101 | Flatpak is a system for building, distributing, and running sandboxed ... |
| CVE-2023-28100 | Flatpak is a system for building, distributing, and running sandboxed ... |
| CVE-2022-21682 | Flatpak is a Linux application sandboxing and distribution framework. ... |
| CVE-2021-43860 | Flatpak is a Linux application sandboxing and distribution framework. ... |
| CVE-2021-41133 | Flatpak is a system for building, distributing, and running sandboxed ... |
| CVE-2021-21381 | Flatpak is a system for building, distributing, and running sandboxed ... |
| CVE-2021-21261 | Flatpak is a system for building, distributing, and running sandboxed ... |
| CVE-2019-10063 | Flatpak before 1.0.8, 1.1.x and 1.2.x before 1.2.4, and 1.3.x before 1 ... |
| CVE-2019-8308 | Flatpak before 1.0.7, and 1.1.x and 1.2.x before 1.2.3, exposes /proc ... |
| CVE-2018-6560 | In dbus-proxy/flatpak-proxy.c in Flatpak before 0.8.9, and 0.9.x and 0 ... |
| CVE-2017-9780 | In Flatpak before 0.8.7, a third-party app repository could include ma ... |