CVE-2024-1459Medium· 5.3▾ SunlitA path traversal vulnerability was found in Undertow. This issue may allow a remote attacker to append a specially-crafted sequence to an HTTP request for an application deployed to JBoss EAP, which may permit access to privileged or res…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 29.2 · likelihood 0.3 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Aug 4.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
1.7%
A path traversal vulnerability was found in Undertow. This issue may allow a remote attacker to append a specially-crafted sequence to an HTTP request for an application deployed to JBoss EAP, which may permit access to privileged or restricted files and directories.
undertowRefer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2024-3653Medium· 5.3A vulnerability was found in Undertow
CVE-2026-41082High· 7.3In OCaml opam before 2.5.1, a .install field containing a destination filepath can use ../ to reach a parent directory.
CVE-2026-71224Medium· 4.7A stack overflow vulnerability was found in gfs2-utils
CVE-2026-71221High· 7.0A stack out-of-bounds write vulnerability was found in gfs2-utils
CVE-2026-71220High· 7.0A stack out-of-bounds write vulnerability was found in gfs2-utils
CVE-2026-71219Medium· 4.7A stack overflow vulnerability was found in gfs2-utils