App Store Lenovo App Store

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Lenovo App Store.

By the Year

In 2026 there have been 3 vulnerabilities in Lenovo App Store with an average score of 7.2 out of ten. Last year, in 2025 App Store had 3 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in App Store in 2026 could surpass last years number. Last year, the average CVE base score was greater by 0.33

Year Vulnerabilities Average Score
2026 3 7.20
2025 3 7.53
2024 2 6.65

It may take a day or so for new App Store vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Lenovo App Store Security Vulnerabilities

Lenovo App Store Local Auth PrivEsc Arbitrary Code Exec
CVE-2026-13104 7.3 - High - July 16, 2026

A potential vulnerability was reported in Lenovo App Store, distributed exclusively in the Chinese market, that could allow a local authenticated user to execute arbitrary code with elevated privileges.

Execution with Unnecessary Privileges

Lenovo App Store Path Traversal Enables Authenticated Code Exec
CVE-2026-13103 7.3 - High - July 16, 2026

A potential path traversal vulnerability was reported in Lenovo App Store, distributed exclusively in the Chinese market, that could allow a local authenticated user to execute arbitrary code.

Directory traversal

Local LPE via insecure perms in Lenovo App Store (Legion Zone) on Windows
CVE-2026-9046 7 - High - July 16, 2026

A potential insecure permissions vulnerability was reported in Legion Zone and the Lenovo App Store Windows applications, distributed exclusively in the Chinese market, that when installed on a nonsystem partition, could allow a local user to execute arbitrary code.

Insecure Inherited Permissions

DLL Hijacking in Lenovo App Store & Browser enabling local code exec
CVE-2025-12046 7.8 - High - December 10, 2025

A DLL hijacking vulnerability was reported in the Lenovo App Store and Lenovo Browser applications that could allow a local authenticated user to execute code with elevated privileges under certain conditions.

DLL preloading

Lenovo PC Manager/App Store/Browser/Legion Zone RCE via LAN
CVE-2025-10495 7.5 - High - November 12, 2025

A potential vulnerability was reported in the Lenovo PC Manager, Lenovo App Store, Lenovo Browser, and Lenovo Legion Zone client applications that, under certain conditions, could allow an attacker on the same logical network to execute arbitrary code.

Improper Certificate Validation

Privileged Escalation via Improper Permissions in Lenovo App Store
CVE-2025-8485 7.3 - High - November 12, 2025

An improper permissions vulnerability was reported in Lenovo App Store that could allow a local authenticated user to execute code with elevated privileges during installation of an application.

Incorrect Default Permissions

DLL Hijack in Lenovo App Store Enables Local Privilege Escalation
CVE-2024-4130 7.8 - High - October 11, 2024

A DLL hijack vulnerability was reported in Lenovo App Store that could allow a local attacker to execute code with elevated privileges.

DLL preloading

Lenovo App Store: Permission Exploit Causing DoS
CVE-2023-6450 5.5 - Medium - January 19, 2024

An incorrect permissions vulnerability was reported in the Lenovo App Store app that could allow an attacker to use system resources, resulting in a denial of service.

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Lenovo App Store or by Lenovo? Click the Watch button to subscribe.

Lenovo
Vendor

subscribe