flatpak records
18 published records for vendor flatpak.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-20 Improper Input Validation3
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')3
- CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')3
- CWE-61 UNIX Symbolic Link (Symlink) Following2
- CWE-668 Exposure of Resource to Wrong Sphere1
- CWE-732 Incorrect Permission Assignment for Critical Resource1
The weakness classes this vendor ships most often: where to look.
CWEAll records
18 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2024-42472No exploit | Flatpak may allow access to files outside sandbox for certain appsflatpak · flatpak · CWE-74 | Critical10.0 | — | 1.3% | Aug 15, 2024 |
37Monitor | CVE-2019-10063No exploit | Flatpak before 1.0.8, 1.1.x and 1.2.x before 1.2.4, and 1.3.x before 1.3.1 allows a sandbox bypass.flatpak · flatpak · CWE-20 | Critical9.0 | — | 1.9% | Mar 26, 2019 |
37Monitor | CVE-2026-34078No exploit | Flatpak has a complete sandbox escape leading to host file access and code execution in the host contextflatpak · flatpak · CWE-61 | Critical9.3 | — | 0.9% | Apr 7, 2026 |
35Monitor | CVE-2021-21261No exploit | Flatpak sandbox escape via spawn portalflatpak · flatpak · CWE-74 | High8.8 | — | 0.6% | Jan 14, 2021 |
35Monitor | CVE-2018-6560No exploit | In dbus-proxy/flatpak-proxy.c in Flatpak before 0.8.9, and 0.9.x and 0.10.x before 0.10.3, crafted D-Bus messages to the host can be used toflatpak · flatpak · CWE-436 | High8.8 | — | 0.4% | Feb 2, 2018 |
34Monitor | CVE-2021-43860No exploit | Permissions granted to applications can be hidden from the user at install timeflatpak · flatpak · CWE-269 | High8.6 | — | 1.3% | Jan 12, 2022 |
34Monitor | CVE-2026-34079No exploit | Flatpak affected by arbitrary file deletion on the host filesystemflatpak · flatpak · CWE-22 | High8.7 | — | 0.4% | Apr 7, 2026 |
33Monitor | CVE-2024-32462Proof of concept | Flatpak vulnerable to a sandbox escape via RequestBackground portal due to bad argument parsingflatpak · flatpak · CWE-88 | High8.4 | — | 0.5% | Apr 18, 2024 |
32Monitor | CVE-2021-21381No exploit | Sandbox escape via special tokens in .desktop fileflatpak · flatpak · CWE-74 | High8.2 | — | 1.5% | Mar 11, 2021 |
32Monitor | CVE-2019-8308No exploit | Flatpak before 1.0.7, and 1.1.x and 1.2.x before 1.2.3, exposes /proc in the apply_extra script sandbox, which allows attackers to modify a flatpak · flatpak · CWE-668 | High8.2 | — | 0.5% | Feb 12, 2019 |
31Monitor | CVE-2021-41133No exploit | Sandbox bypass via recent VFS-manipulating syscallsflatpak · flatpak · CWE-20 | High7.8 | — | 0.4% | Oct 8, 2021 |
31Monitor | CVE-2017-9780No exploit | In Flatpak before 0.8.7, a third-party app repository could include malicious apps that contain files with inappropriate permissions, for exflatpak · flatpak · CWE-732 | High7.8 | — | 0.4% | Jun 21, 2017 |
28Monitor | CVE-2026-39977No exploit | flatpak-builder has a path traversal leading to arbitrary file read on host when installing licence filesflatpak · flatpak-builder · CWE-22 | High7.1 | — | 0.4% | Apr 9, 2026 |
27Monitor | CVE-2022-21682No exploit | flatpak-builder can access files outside the build directory.flatpak · flatpak · CWE-22 | Medium6.5 | — | 1.7% | Jan 13, 2022 |
27Monitor | CVE-2026-34080No exploit | xdg-dbus-proxy has an eavesdrop filter bypass allowing message interceptionflatpak · xdg-dbus-proxy · CWE-1289 | Medium6.8 | — | 0.2% | Apr 7, 2026 |
26Monitor | CVE-2023-28100No exploit | TIOCLINUX can send commands outside sandbox if running on a virtual consoleflatpak · flatpak · CWE-20 | Medium6.5 | — | 0.9% | Mar 16, 2023 |
25Monitor | CVE-2026-40354No exploit | Flatpak xdg-desktop-portal before 1.20.4 and 1.21.x before 1.21.1 allows any Flatpak app to trash any file in the host context via a symlinkflatpak · xdg-desktop-portal · CWE-61 | Medium6.3 | — | 0.2% | Apr 10, 2026 |
17Monitor | CVE-2023-28101No exploit | Flatpak metadata with ANSI control codes can cause misleading terminal outputflatpak · flatpak · CWE-116 | Medium4.3 | — | 0.9% | Mar 16, 2023 |
- CVE-2024-4247240Plan
Flatpak may allow access to files outside sandbox for certain apps
CriticalCVSS 10.0No exploitEPSS 1%flatpak · flatpakAug 15, 2024
- CVE-2019-1006337Monitor
Flatpak before 1.0.8, 1.1.x and 1.2.x before 1.2.4, and 1.3.x before 1.3.1 allows a sandbox bypass.
CriticalCVSS 9.0No exploitEPSS 2%flatpak · flatpakMar 26, 2019
- CVE-2026-3407837Monitor
Flatpak has a complete sandbox escape leading to host file access and code execution in the host context
CriticalCVSS 9.3No exploitEPSS 1%flatpak · flatpakApr 7, 2026
- CVE-2021-2126135Monitor
Flatpak sandbox escape via spawn portal
HighCVSS 8.8No exploitEPSS 1%flatpak · flatpakJan 14, 2021
- CVE-2018-656035Monitor
In dbus-proxy/flatpak-proxy.c in Flatpak before 0.8.9, and 0.9.x and 0.10.x before 0.10.3, crafted D-Bus messages to the host can be used to
HighCVSS 8.8No exploitEPSS 0%flatpak · flatpakFeb 2, 2018
- CVE-2021-4386034Monitor
Permissions granted to applications can be hidden from the user at install time
HighCVSS 8.6No exploitEPSS 1%flatpak · flatpakJan 12, 2022
- CVE-2026-3407934Monitor
Flatpak affected by arbitrary file deletion on the host filesystem
HighCVSS 8.7No exploitEPSS 0%flatpak · flatpakApr 7, 2026
- CVE-2024-3246233Monitor
Flatpak vulnerable to a sandbox escape via RequestBackground portal due to bad argument parsing
HighCVSS 8.4Proof of conceptEPSS 1%flatpak · flatpakApr 18, 2024
- CVE-2021-2138132Monitor
Sandbox escape via special tokens in .desktop file
HighCVSS 8.2No exploitEPSS 2%flatpak · flatpakMar 11, 2021
- CVE-2019-830832Monitor
Flatpak before 1.0.7, and 1.1.x and 1.2.x before 1.2.3, exposes /proc in the apply_extra script sandbox, which allows attackers to modify a
HighCVSS 8.2No exploitEPSS 0%flatpak · flatpakFeb 12, 2019
- CVE-2021-4113331Monitor
Sandbox bypass via recent VFS-manipulating syscalls
HighCVSS 7.8No exploitEPSS 0%flatpak · flatpakOct 8, 2021
- CVE-2017-978031Monitor
In Flatpak before 0.8.7, a third-party app repository could include malicious apps that contain files with inappropriate permissions, for ex
HighCVSS 7.8No exploitEPSS 0%flatpak · flatpakJun 21, 2017
- CVE-2026-3997728Monitor
flatpak-builder has a path traversal leading to arbitrary file read on host when installing licence files
HighCVSS 7.1No exploitEPSS 0%flatpak · flatpak-builderApr 9, 2026
- CVE-2022-2168227Monitor
flatpak-builder can access files outside the build directory.
MediumCVSS 6.5No exploitEPSS 2%flatpak · flatpakJan 13, 2022
- CVE-2026-3408027Monitor
xdg-dbus-proxy has an eavesdrop filter bypass allowing message interception
MediumCVSS 6.8No exploitEPSS 0%flatpak · xdg-dbus-proxyApr 7, 2026
- CVE-2023-2810026Monitor
TIOCLINUX can send commands outside sandbox if running on a virtual console
MediumCVSS 6.5No exploitEPSS 1%flatpak · flatpakMar 16, 2023
- CVE-2026-4035425Monitor
Flatpak xdg-desktop-portal before 1.20.4 and 1.21.x before 1.21.1 allows any Flatpak app to trash any file in the host context via a symlink
MediumCVSS 6.3No exploitEPSS 0%flatpak · xdg-desktop-portalApr 10, 2026
- CVE-2023-2810117Monitor
Flatpak metadata with ANSI control codes can cause misleading terminal output
MediumCVSS 4.3No exploitEPSS 1%flatpak · flatpakMar 16, 2023