CVE-2026-96808 | Flatpak up to 1.18.0 Revokefs Writer link following

SecurityVulns

A vulnerability marked as very critical has been reported in Flatpak up to 1.18.0. The affected element is an unknown function of the component Revokefs Writer. This manipulation causes link following.

This vulnerability appears as CVE-2026-96808. The attack requires local access. There is no available exploit.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More