VulnSea

CWE-22

CVEs classified under CWE-22, newest first.

1061 CVEsRSS

CVE-2026-55557High
1mo ago

browse-mcp is a Playwright-based headless-browser MCP server for MCP-capable agents

browse-mcp is a Playwright-based headless-browser MCP server for MCP-capable agents. Prior to 0.8.2, browser_download writes a fetched response body to join(save_dir, filename) without validating the caller-controlled save_dir, while bro…

▾ Twilightbrowse-mcp · browse-mcpEPSS 0.24%via NVD
CVE-2026-55540High· 7.1
1mo ago

PraisonAI: [Path Traversal] agent tools escape the configured workspace via symlinks

PraisonAI: [Path Traversal] agent tools escape the configured workspace via symlinks

▾ Twilightpraisonai · praisonaiEPSS 0.39%via OSV
CVE-2026-55527High· 7.1
1mo ago

praisonaiagents vulnerable to arbitrary file write via unsanitized `user_id` in `FileMemory.__init__()` — path traversal to any writable …

praisonaiagents vulnerable to arbitrary file write via unsanitized `user_id` in `FileMemory.__init__()` — path traversal to any writable location

▾ Twilightpraisonaiagents · praisonaiagentsEPSS 0.48%via OSV
CVE-2026-32637Medium
1mo ago

Velero is an open source tool for backing up, restoring, and migrating Kubernetes cluster resources and persistent volumes

Velero is an open source tool for backing up, restoring, and migrating Kubernetes cluster resources and persistent volumes. Prior to 1.18.1, an attacker who compromises the backup object-storage backend can upload a malicious backup tarb…

▾ Sunlitvmware-tanzu · github.com/vmware-tanzu/veleroEPSS 0.54%via NVD
CVE-2026-76844High· 7.4
1mo ago

webpack-dev-middleware resolves a request to a local file in getFilenameFromUrl by testing the request pathname against a traversal guard and then slicing it at a fixed character offset

webpack-dev-middleware resolves a request to a local file in getFilenameFromUrl by testing the request pathname against a traversal guard and then slicing it at a fixed character offset. The guard, UP_PATH_REGEXP applied to path.normaliz…

▾ TwilightEPSS 0.48%via NVD
CVE-2026-76842High· 8.2
1mo ago

The Mercado Pago Node.js SDK interpolates caller-supplied identifiers into API request paths without percent-encoding them, so characters that are structural in a URL survive into the outgoing request

The Mercado Pago Node.js SDK interpolates caller-supplied identifiers into API request paths without percent-encoding them, so characters that are structural in a URL survive into the outgoing request. The payment (get, capture, cancel),…

▾ TwilightEPSS 0.49%via NVD
CVE-2026-77914Medium· 6.5
1mo ago

rConfig Core 8.0.0 before 8.2.13 contains a path traversal vulnerability that allows authenticated users to read arbitrary files by supplying crafted filenames containing directory traversal sequences to the export download endpoint

rConfig Core 8.0.0 before 8.2.13 contains a path traversal vulnerability that allows authenticated users to read arbitrary files by supplying crafted filenames containing directory traversal sequences to the export download endpoint. Att…

▾ SunlitEPSS 0.72%via NVD
CVE-2026-66897Critical· 9.9
1mo ago

A path traversal vulnerability in LXD's instance template processing allows an attacker with container edit permissions, or any user launching a crafted image, to overwrite arbitrary files on the host system as root

A path traversal vulnerability in LXD's instance template processing allows an attacker with container edit permissions, or any user launching a crafted image, to overwrite arbitrary files on the host system as root. When processing targ…

▾ Midnightcanonical · lxdEPSS 0.72%via NVD
GHSA-w8j7-39hp-8x59Medium
1mo ago

Cloudreve's remote download file paths can escape the selected destination directory

Cloudreve's remote download file paths can escape the selected destination directory

▾ Sunlitcloudreve · github.com/cloudreve/Cloudreve/v4via GHSA
CVE-2026-76606None
1mo ago

Joomla Extension - fabrikar.com - Path Traversal via image element in Fabrik < 4.7.3 - ???.

Joomla Extension - fabrikar.com - Path Traversal via image element in Fabrik < 4.7.3 - ???.

▾ SunlitEPSS 0.50%via NVD
CVE-2026-76598None
1mo ago

Joomla Extension - fabrikar.com - Unauthenticated arbitrary directory listing via onAjax_getFolders in Fabrik < 4.7.2 - The onAjax_getFolders method of the elements model allows arbitrary directory listings.

Joomla Extension - fabrikar.com - Unauthenticated arbitrary directory listing via onAjax_getFolders in Fabrik < 4.7.2 - The onAjax_getFolders method of the elements model allows arbitrary directory listings.

▾ SunlitEPSS 0.46%via NVD
CVE-2026-63312High· 7.5
1mo ago

NLTK before 3.10.0 contains an arbitrary local file read vulnerability in StreamBackedCorpusView that bypasses pathsec.ENFORCE by calling builtins.open() directly instead of pathsec.open()

NLTK before 3.10.0 contains an arbitrary local file read vulnerability in StreamBackedCorpusView that bypasses pathsec.ENFORCE by calling builtins.open() directly instead of pathsec.open(). Attackers who control the fileid argument can r…

▾ Twilightnltk · nltkEPSS 0.65%via NVD
CVE-2026-62385Medium· 5.9
1mo ago

NLTK versions before 3.10.0 contain a path traversal vulnerability in FramenetCorpusReader and NKJPCorpusReader that allows attackers to parse XML files outside the corpus root by supplying unsafe selectors or poisoned index state

NLTK versions before 3.10.0 contain a path traversal vulnerability in FramenetCorpusReader and NKJPCorpusReader that allows attackers to parse XML files outside the corpus root by supplying unsafe selectors or poisoned index state. Attac…

▾ Sunlitnltk · nltkEPSS 0.42%via NVD
CVE-2026-62384High· 7.5
1mo ago

NLTK versions before 3.10.2 contain a symlink-based sandbox bypass in FramenetCorpusReader that allows attackers to read arbitrary XML files outside the corpus root

NLTK versions before 3.10.2 contain a symlink-based sandbox bypass in FramenetCorpusReader that allows attackers to read arbitrary XML files outside the corpus root. Attackers can place symlinks with names containing no path separators i…

▾ Twilightnltk · nltkEPSS 0.65%via NVD
CVE-2026-62383Medium· 5.5
1mo ago

nltk versions before 3.10.2 contain a symlink-based arbitrary file read vulnerability in IPIPANCorpusReader methods that bypass nltk.pathsec validation entirely

nltk versions before 3.10.2 contain a symlink-based arbitrary file read vulnerability in IPIPANCorpusReader methods that bypass nltk.pathsec validation entirely. Attackers can place a symlink in the corpus root directory and read arbitra…

▾ Sunlitnltk · nltkEPSS 0.18%via NVD
CVE-2026-71514Low· 2.5
1mo ago

NLTK 3.9.4 through 3.10.2 contains a path traversal vulnerability in CrubadanCorpusReader

NLTK 3.9.4 through 3.10.2 contains a path traversal vulnerability in CrubadanCorpusReader. _load_lang_ngrams joins the corpus root with crubadan_code, the column-0 value read from the corpus table.txt mapping file, and opens the result w…

▾ Sunlitnltk · nltkEPSS 0.17%via NVD
CVE-2026-60084High· 8.7
1mo ago

SiYuan versions before v3.7.4 contain an arbitrary file deletion vulnerability in the /api/search/removeTemplate endpoint that accepts an unvalidated path parameter passed directly to os.RemoveAll

SiYuan versions before v3.7.4 contain an arbitrary file deletion vulnerability in the /api/search/removeTemplate endpoint that accepts an unvalidated path parameter passed directly to os.RemoveAll. Authenticated admin attackers can suppl…

▾ TwilightEPSS 0.55%via NVD
CVE-2026-77763Medium· 6.5
1mo ago

The filestore backend in pkg/object/file.go, used for file:// stores and as a common juicefs sync destination, derived every operation's target from path(key), which returned either filepath.Join(d.root, key) or filepath.Clean(d.root + k…

The filestore backend in pkg/object/file.go, used for file:// stores and as a common juicefs sync destination, derived every operation's target from path(key), which returned either filepath.Join(d.root, key) or filepath.Clean(d.root + k…

▾ Sunlitjuicedata · github.com/juicedata/juicefsEPSS 0.50%via NVD
CVE-2026-77814High· 7.5PoC
1mo ago

is_path_trusted in scripts/iib/api.py compares the requested path against each allowed parent directory with path.startswith(parent_path), without appending a path separator

is_path_trusted in scripts/iib/api.py compares the requested path against each allowed parent directory with path.startswith(parent_path), without appending a path separator. A directory whose name merely begins with an allowed path ther…

▾ Midnightzanllp · infinite-image-browsingEPSS 0.50%via NVD
CVE-2026-48105High· 8.3
1mo ago

Arc is an open, SQL-native time-series database for telemetry

Arc is an open, SQL-native time-series database for telemetry. Prior to version 26.06.1, Arc Enterprise's Raft FSM (`internal/cluster/raft/fsm.go:applyRegisterFile`) accepts attacker-chosen file paths in manifest-registration proposals w…

▾ TwilightBasekick-Labs · arcEPSS 0.22%via NVD
GHSA-486p-g8x4-77mgMedium· 7.1
1mo ago

Duplicate Advisory: ONNX: TOCTOU arbitrary file read/write in save_external_dat

Duplicate Advisory: ONNX: TOCTOU arbitrary file read/write in save_external_dat

▾ Sunlitonnx · onnxvia GHSA
CVE-2026-71493Medium
1mo ago

Infracost provides cloud cost intelligence for engineers, AI coding agents, and CI/CD

Infracost provides cloud cost intelligence for engineers, AI coding agents, and CI/CD. Prior to 0.10.45, the readFile, pathExists, isDir, and matchPaths template functions in internal/config/template/parser.go use a lexical filepath.Rel …

▾ Sunlitinfracost · github.com/infracost/infracostEPSS 0.54%via NVD
CVE-2026-62677High· 8.8
1mo ago

Omnigent is an open-source AI agent framework and meta-harness for orchestrating coding agents

Omnigent is an open-source AI agent framework and meta-harness for orchestrating coding agents. Prior to 0.3.0, an authenticated user can upload a session-scoped agent bundle with an absolute or traversal-containing os_env.cwd value beca…

▾ Twilightomnigent · omnigentEPSS 0.61%via NVD
CVE-2026-49114High· 7.1
1mo ago

In ONNX before 1.21.0, the 'save_external_data' function builds the external-data file path from the model's external_data location field and opens it for writing without 'O_NOFOLLOW/O_EXCL', after a non-atomic 'os.path.isfile()' check

In ONNX before 1.21.0, the 'save_external_data' function builds the external-data file path from the model's external_data location field and opens it for writing without 'O_NOFOLLOW/O_EXCL', after a non-atomic 'os.path.isfile()' check. …

▾ Twilightlinuxfoundation · onnxEPSS 0.16%via NVD
CVE-2026-64679High· 8.1
1mo ago

Atlantis is a self-hosted golang application that listens for Terraform pull request events via webhooks

Atlantis is a self-hosted golang application that listens for Terraform pull request events via webhooks. From 0.19.8 until 0.45.0, Atlantis does not consistently validate user-controlled workspace values supplied through accepted reposi…

▾ Twilightrunatlantis · github.com/runatlantis/atlantisEPSS 0.80%via NVD
CVE-2026-45099Medium
1mo ago

Terragrunt is a flexible orchestration tool that allows Infrastructure as Code written in OpenTofu or Terraform to scale

Terragrunt is a flexible orchestration tool that allows Infrastructure as Code written in OpenTofu or Terraform to scale. Prior to 1.0.4, Terragrunt trusts paths decoded from a downloaded module's .terragrunt-module-manifest during fileM…

▾ Sunlitgruntwork-io · github.com/gruntwork-io/terragruntEPSS 0.54%via NVD
CVE-2026-47735High
1mo ago

Arc is an open, SQL-native time-series database for telemetry

Arc is an open, SQL-native time-series database for telemetry. Prior to version 26.06.1, Arc's user-SQL validator (`internal/api/query.go:ValidateSQLRequest`) blocked only `read_parquet(` and `arc_partition_agg(` via regex denylist. The …

▾ Twilightbasekick-labs · github.com/basekick-labs/arcEPSS 0.43%via NVD
CVE-2026-44517Medium· 6.3
1mo ago

Buildah is a tool that facilitates building OCI images

Buildah is a tool that facilitates building OCI images. From 1.38.1 until 1.43.2 and 1.44.0, TempDirForURL in define/types.go does not securely confine Git repository subdirectories to the downloaded build context, and downloadToDirector…

▾ Sunlitcontainers · github.com/containers/buildahEPSS 0.18%via NVD
CVE-2026-73040High· 8.8PoC
1mo ago

Dockge validates a stack name only on the write path

Dockge validates a stack name only on the write path. In backend/stack.ts the allow-list check in validate(), which requires the name to match ^[a-z0-9_-]+$, is reached from save() alone, while the path getter returns path.join(this.serv…

▾ Midnightlouislam · dockgeEPSS 0.94%via NVD
CVE-2026-73255Medium· 6.5
1mo ago

Mongoose is an embedded web server and network library

Mongoose is an embedded web server and network library. Prior to 7.22, an attacker who can control an SSI-enabled file can place directory traversal sequences in an #include file or #include virtual directive. The mg_ssi() function in sr…

▾ SunlitEPSS 0.79%via NVD
CWE-22 vulnerabilities (CVEs) — page 15 · VulnSea