CWE-61

CWE-61 · 5 records · 5 with a public proof-of-concept

Records the NVD classes under CWE-61, highest CVSS first.

  1. HIGH 7.4CVE-2026-96808public PoC

    In Flatpak before 1.18.1, the revokefs writer, used by the flatpak-system-helper to receive repository data from unprivileged callers, validated file paths by rejecting literal .. components but did not prevent symlink traversal. A malicious local user in an a…

    AI risk analysis on Exploit-DB.ai →

  2. HIGH 7.1CVE-2026-97024public PoC

    A path traversal vulnerability in Flatpak's handling of the files/etc directory during app deployment allows a malicious Flatpak app to cause certain host system files (such as passwd, group, machine-id, or resolv.conf) to be emptied or replaced with a symlink…

    AI risk analysis on Exploit-DB.ai →

  3. HIGH 7.1CVE-2026-97023public PoC

    A path traversal vulnerability in Flatpak's handling of the export/bin directory during app deployment allows a malicious Flatpak app to cause deletion of attacker-chosen files outside the deployment directory when the app is installed or upgraded. In system-w…

    AI risk analysis on Exploit-DB.ai →

  4. MEDIUM 4CVE-2026-96807public PoC

    In Flatpak before 1.18.1, a malicious sandboxed app can replace ~/.var/app/$appid/.ld.so with a symlink, causing regenerate_ld_cache to write files at an arbitrary location. The filenames and content are not attacker controlled, making this hard to exploit.

    AI risk analysis on Exploit-DB.ai →

  5. UNSCOREDCVE-2026-47763public PoC

    pdm is a Python package and dependency manager supporting the latest PEP standards. In versions prior to 2.27.0, pdm writes several project-local state or configuration files without symlink protection. If a malicious repository places those files as symlinks,…

    AI risk analysis on Exploit-DB.ai →