> Debian yelp Important Information Disclosure Sandbox Escape DSA-6319-1
[DATE: 02/06/2026 06:45]
[LANGUAGE: EN]
A vulnerability was discovered in yelp, the GNOME help browser, that allows a crafted help document to read files accessible to the user and exfiltrate them to a remote server through resources loaded by the embedded web view. When yelp is launched from a sandboxed application (for example via the Flatpak OpenURI portal), this also enables a