Vulnerability Description
Flameshot is powerful yet simple to use screenshot software. Prior to 14.0.0, the Open With feature wrote screenshots to a predictable temporary path and followed symlinks, creating a time-of-check to time-of-use race that allowed a local unprivileged attacker on the same machine to pre-plant a symlink and cause Flameshot to write PNG data through it, overwriting any file the victim user could write. This issue is fixed in version 14.0.0.
Related Weaknesses (CWE)
References
- https://github.com/flameshot-org/flameshot/commit/936716b8d8b7052be461c3d5e2f884
- https://github.com/flameshot-org/flameshot/pull/4716
- https://github.com/flameshot-org/flameshot/releases/tag/v14.0.0
- https://github.com/flameshot-org/flameshot/security/advisories/GHSA-fqqf-4rj8-c3
FAQ
What is CVE-2026-62294?
CVE-2026-62294 is a documented vulnerability. Flameshot is powerful yet simple to use screenshot software. Prior to 14.0.0, the Open With feature wrote screenshots to a predictable temporary path and followed symlinks, creating a time-of-check to...
How severe is CVE-2026-62294?
CVSS scoring is not yet available for CVE-2026-62294. Check NVD for updates.
Is there a patch for CVE-2026-62294?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.