External Publication
Visit Post

CVE-2026-34078: Flatpak Complete sandbox escape leading to host file access and code execution in the host context

Privacy Guides Community [Unofficial] April 9, 2026
Source

GitHub

CVE-2026-34078: Complete sandbox escape leading to host file access and code...

Impact Every Flatpak app is able to read and write arbitrary files on the host and execute code in the host context. ### Description The Flatpak portal accepts paths in the `sandbox-expose...

Discussion in the ATmosphere

Loading comments...