Lenovo App Store
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Lenovo App Store.
By the Year
In 2026 there have been 3 vulnerabilities in Lenovo App Store with an average score of 7.2 out of ten. Last year, in 2025 App Store had 3 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in App Store in 2026 could surpass last years number. Last year, the average CVE base score was greater by 0.33
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 3 | 7.20 |
| 2025 | 3 | 7.53 |
| 2024 | 2 | 6.65 |
It may take a day or so for new App Store vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Lenovo App Store Security Vulnerabilities
Lenovo App Store Local Auth PrivEsc Arbitrary Code Exec
CVE-2026-13104
7.3 - High
- July 16, 2026
A potential vulnerability was reported in Lenovo App Store, distributed exclusively in the Chinese market, that could allow a local authenticated user to execute arbitrary code with elevated privileges.
Execution with Unnecessary Privileges
Lenovo App Store Path Traversal Enables Authenticated Code Exec
CVE-2026-13103
7.3 - High
- July 16, 2026
A potential path traversal vulnerability was reported in Lenovo App Store, distributed exclusively in the Chinese market, that could allow a local authenticated user to execute arbitrary code.
Directory traversal
Local LPE via insecure perms in Lenovo App Store (Legion Zone) on Windows
CVE-2026-9046
7 - High
- July 16, 2026
A potential insecure permissions vulnerability was reported in Legion Zone and the Lenovo App Store Windows applications, distributed exclusively in the Chinese market, that when installed on a nonsystem partition, could allow a local user to execute arbitrary code.
Insecure Inherited Permissions
DLL Hijacking in Lenovo App Store & Browser enabling local code exec
CVE-2025-12046
7.8 - High
- December 10, 2025
A DLL hijacking vulnerability was reported in the Lenovo App Store and Lenovo Browser applications that could allow a local authenticated user to execute code with elevated privileges under certain conditions.
DLL preloading
Lenovo PC Manager/App Store/Browser/Legion Zone RCE via LAN
CVE-2025-10495
7.5 - High
- November 12, 2025
A potential vulnerability was reported in the Lenovo PC Manager, Lenovo App Store, Lenovo Browser, and Lenovo Legion Zone client applications that, under certain conditions, could allow an attacker on the same logical network to execute arbitrary code.
Improper Certificate Validation
Privileged Escalation via Improper Permissions in Lenovo App Store
CVE-2025-8485
7.3 - High
- November 12, 2025
An improper permissions vulnerability was reported in Lenovo App Store that could allow a local authenticated user to execute code with elevated privileges during installation of an application.
Incorrect Default Permissions
DLL Hijack in Lenovo App Store Enables Local Privilege Escalation
CVE-2024-4130
7.8 - High
- October 11, 2024
A DLL hijack vulnerability was reported in Lenovo App Store that could allow a local attacker to execute code with elevated privileges.
DLL preloading
Lenovo App Store: Permission Exploit Causing DoS
CVE-2023-6450
5.5 - Medium
- January 19, 2024
An incorrect permissions vulnerability was reported in the Lenovo App Store app that could allow an attacker to use system resources, resulting in a denial of service.
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Lenovo App Store or by Lenovo? Click the Watch button to subscribe.