CVE-2026-97023
7.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H
Summary
A path traversal vulnerability in Flatpak's handling of the export/bin directory during app deployment allows a malicious Flatpak app to cause deletion of attacker-chosen files outside the deployment directory when the app is installed or upgraded. In system-wide installations, the deletion is performed as root.
Affected Software
| Vendor | Product | Version Range | Status |
|---|
Weaknesses
- CWE-61: UNIX Symbolic Link (Symlink) Following
Workarounds
Avoid installing Flatpak apps from non-trusted publishers, particularly in system-wide deployments.
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: no
- Technical Impact: partial
References
- https://access.redhat.com/security/cve/CVE-2026-97023
- https://github.com/flatpak/flatpak/security/advisories/GHSA-5p67-xh8x-rq54
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.