Search CVE reports


Toggle filters

1 result


CVE-2026-40354

Medium priority
Vulnerable

Flatpak xdg-desktop-portal before 1.20.4 and 1.21.x before 1.21.1 allows any Flatpak app to trash any file in the host context via a symlink attack on g_file_trash.

1 affected package

xdg-desktop-portal

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xdg-desktop-portal Not affected Vulnerable Ignored Ignored Ignored
Show less packages