Featured image of post OpenSave: security update v2.4.1 released

OpenSave: security update v2.4.1 released

OpenSave, a tool for peer-to-peer synchronization of game saves between devices, has been released in version v2.4.1.

Shortly after version 2.4.0, this update closes a critical security vulnerability (CVE-2026-103398): a paired device could previously reach folders that aren’t game saves. Requests for save data now require a cryptographic signature from a valid pairing. Devices paired over the internet before version 2.4.0 therefore need to be re-paired.

This security update addresses critical vulnerabilities in device pairing and folder access controls.

Security Fixes:

  • A paired device can no longer reach folders that aren’t game saves, through improved folder recognition restrictions
  • Requests for save data now require cryptographic signatures from valid pairings
  • Devices paired over the internet before version 2.4.0 must be re-paired to maintain functionality

Other Improvements:

  • Restored backups no longer incorrectly hold back games
  • Initial startup delays resolved with proper service initialization
  • Games from other devices receive proper history tracking and monitoring
  • Large save libraries no longer cause excessive system resource consumption

OpenSave library view

Source: GitHub

PlayingTux – Playing Games on Linux - since 1995.