Known vulnerabilities in xdg-desktop-portal
Vendor:
Flatpak
Software:
xdg-desktop-portal
Software CPE:
cpe:2.3:a:flatpak:xdg-desktop-portal:*:*:*:*:*:*:*:*
Website:
https://flatpak.github.io/
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
1.22.1
1.22.0
1.21.2
1.21.1
1.20.4
1.21.0
1.20.3
1.20.2
1.20.1
1.20.0
1.19.4
1.19.3
1.19.2
1.19.1
1.19.0
1.18.4
1.16.1
1.18.3
1.18.2
1.18.1
1.18.0
1.17.2
1.17.1
1.17.0
1.16.0
1.15.0
1.14.6
1.12.6
1.14.5
1.12.5
1.14.4
1.14.3
1.12.4
1.14.2
1.12.3
1.14.1
1.14.0
1.12.2
1.12.1
1.12.0
1.10.1
1.10.0
1.8.1
0.1
0.2
0.3
0.4
0.5
0.6
0.7
0.8
0.9
0.10
0.11
0.99
1.0
1.0.1
1.0.2
1.0.3
1.1.0
1.1.1
1.2.0
1.4.0
1.4.1
1.8.0
1.4.2
1.5.0
1.5.1
1.5.2
1.5.3
1.5.4
1.6.0
1.7.0
1.7.1
1.7.2
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU125194 - Time-of-check Time-of-use (TOCTOU) Race Condition CVE-2026-40354 |
CWE-367 | High | 1.20.4 | 08.04.2026 |
SB2026040847 SB2026091493 SB2026091494 and 5 more |
||
| #VU88827 - Argument Injection or Modification CVE-2024-32462 |
CWE-88 | Low | 1.16.1, 1.18.4 | 19.04.2024 |
SB2024041902 SB2024041903 SB2024042944 and 29 more |