VulnSea

CWE-22

CVEs classified under CWE-22, newest first.

1061 CVEsRSS

CVE-2025-13875Medium· 6.3
10mo ago

A weakness has been identified in Yohann0617 oci-helper up to 3.2.4

A weakness has been identified in Yohann0617 oci-helper up to 3.2.4. This issue affects the function addCfg of the file src/main/java/com/yohann/ocihelper/service/impl/OciServiceImpl.java of the component OCI Configuration Upload. Execut…

▾ SunlitEPSS 0.40%via NVD
CVE-2025-13879Low· 2.7
10mo ago

Directory traversal vulnerability in SOLIDserver IPAM v8.2.3

Directory traversal vulnerability in SOLIDserver IPAM v8.2.3. This vulnerability allows an authenticated user with administrator privileges to list directories other than those to which the have authorized access using the 'directory' pa…

▾ Sunlitefficientip · solidserver_ip_address_managementEPSS 0.54%via NVD
CVE-2025-66302Medium· 6.8
10mo ago

Grav is a file-based Web platform

Grav is a file-based Web platform. Prior to 1.8.0-beta.27, A path traversal vulnerability has been identified in Grav CMS, allowing authenticated attackers with administrative privileges to read arbitrary files on the underlying server f…

▾ Sunlitgetgrav · gravEPSS 0.48%via NVD
CVE-2025-66300High· 8.5
10mo ago

Grav is a file-based Web platform

Grav is a file-based Web platform. Prior to 1.8.0-beta.27, A low privilege user account with page editing privilege can read any server files using "Frontmatter" form. This includes Grav user account files (/grav/user/accounts/*.yaml), w…

▾ Twilightgetgrav · gravEPSS 0.45%via NVD
CVE-2025-66295High· 8.8
10mo ago

Grav is a file-based Web platform

Grav is a file-based Web platform. Prior to 1.8.0-beta.27, when a user with privilege of user creation creates a new user through the Admin UI and supplies a username containing path traversal sequences (for example ..\Nijat or ../Nijat)…

▾ Twilightgetgrav · gravEPSS 0.55%via NVD
CVE-2025-13816Medium· 6.3
10mo ago

A security vulnerability has been detected in moxi159753 Mogu Blog v2 up to 5.2

A security vulnerability has been detected in moxi159753 Mogu Blog v2 up to 5.2. The impacted element is the function FileOperation.unzip of the file /networkDisk/unzipFile of the component ZIP File Handler. Such manipulation of the argu…

▾ Sunlitmogublog_project · mogublogEPSS 0.63%via NVD
CVE-2025-13810Medium· 5.3
10mo ago

A vulnerability was found in jsnjfz WebStack-Guns 1.0

A vulnerability was found in jsnjfz WebStack-Guns 1.0. This affects the function renderPicture of the file src/main/java/com/jsnjfz/manage/modular/system/controller/KaptchaController.java. Performing a manipulation results in path traver…

▾ Sunlitjsnjfz · webstack-gunsEPSS 1.00%via NVD
CVE-2025-13791Medium· 6.3
10mo ago

A vulnerability was identified in Scada-LTS up to 2.7.8.1

A vulnerability was identified in Scada-LTS up to 2.7.8.1. Affected is the function Common.getHomeDir of the file br/org/scadabr/vo/exporter/ZIPProjectManager.java of the component Project Import. Such manipulation leads to path traversa…

▾ Sunlitscada-lts · scada-ltsEPSS 0.47%via NVD
CVE-2025-61884High· 7.5CISA KEVPoC
11mo ago

Vulnerability in the Oracle Configurator product of Oracle E-Business Suite (component: Runtime UI)

Vulnerability in the Oracle Configurator product of Oracle E-Business Suite (component: Runtime UI). Supported versions that are affected are 12.2.3-12.2.14. Easily exploitable vulnerability allows unauthenticated attacker with network …

▾ Abyssaloracle · configuratorEPSS 96%via NVD
CVE-2025-60969Medium· 5.7
11mo ago

Directory Traversal vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0076-000 Ver 4.00 allows attackers to gain sensitive information.

Directory Traversal vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0076-000 Ver 4.00 allows attackers to gain sensitive information.

▾ Sunlitendruntechnologies · sonoma_d12_firmwareEPSS 0.56%via NVD
CVE-2025-59682High· 8.8⚖ disputed
12mo ago

django: Potential partial directory-traversal via archive.extract() (CVE-2025-59682)

A flaw was found in Django. The django.utils.archive.extract() function, used by startapp --templateand startproject --template, allowed partial directory-traversal via an archive with file paths sharing a common prefix with the target dir…

▾ TwilightRed Hat · Red Hat Ansible Automation Platform 2.5 for RHEL 8EPSS 0.91%via CSAF
CVE-2025-10050Medium· 6.6
1y ago

The Developer Loggers for Simple History plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 0.5 via the enabled_loggers parameter

The Developer Loggers for Simple History plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 0.5 via the enabled_loggers parameter. This makes it possible for authenticated attackers, with Adm…

▾ SunlitEPSS 0.80%via NVD
CVE-2025-10233Medium· 6.3
1y ago

A security vulnerability has been detected in kalcaddle kodbox 1.61

A security vulnerability has been detected in kalcaddle kodbox 1.61. This affects the function fileGet/fileSave of the file app/controller/explorer/editor.class.php. The manipulation of the argument path leads to path traversal. The atta…

▾ Sunlitkodcloud · kodboxEPSS 0.44%via NVD
CVE-2025-10232Medium· 5.4
1y ago

A weakness has been identified in 299ko up to 2.0.0

A weakness has been identified in 299ko up to 2.0.0. Affected by this issue is the function getSentDir/delete of the file plugin/filemanager/controllers/FileManagerAPIController.php. Executing manipulation can lead to path traversal. It …

▾ SunlitEPSS 0.48%via NVD
CVE-2025-34176Medium· 4.3
1y ago

In pfSense CE /suricata/suricata_ip_reputation.php, the value of the iplist parameter is not sanitized of directory traversal-related strings/characters

In pfSense CE /suricata/suricata_ip_reputation.php, the value of the iplist parameter is not sanitized of directory traversal-related strings/characters. This value is directly used in a file existence check operation. While the contents…

▾ Sunlitpfsense · pfsenseEPSS 15%via NVD
CVE-2025-34173Medium· 4.3
1y ago

In pfSense CE /usr/local/www/snort/snort_ip_reputation.php, the value of the iplist parameter is not sanitized of directory traversal-related characters/strings before being used to check if a file exists

In pfSense CE /usr/local/www/snort/snort_ip_reputation.php, the value of the iplist parameter is not sanitized of directory traversal-related characters/strings before being used to check if a file exists. While the contents of the file …

▾ Sunlitpfsense · pfsenseEPSS 0.90%via NVD
CVE-2025-9566High· 8.1
1y ago

There's a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path

There's a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path. In…

▾ TwilightRed Hat · podmanEPSS 1.1%via NVD
CVE-2025-33032Medium· 4.9
1y ago

A path traversal vulnerability has been reported to affect several QNAP operating system versions

A path traversal vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an administrator account, they can then exploit the vulnerability to read the contents of unexpected files or s…

▾ Sunlitqnap · qtsEPSS 0.50%via NVD
CVE-2025-30271Medium· 6.5
1y ago

A path traversal vulnerability has been reported to affect several QNAP operating system versions

A path traversal vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user account, they can then exploit the vulnerability to read the contents of unexpected files or system data…

▾ Sunlitqnap · qtsEPSS 0.49%via NVD
CVE-2025-30270Medium· 6.5
1y ago

A path traversal vulnerability has been reported to affect several QNAP operating system versions

A path traversal vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user account, they can then exploit the vulnerability to read the contents of unexpected files or system data…

▾ Sunlitqnap · qtsEPSS 0.49%via NVD
CVE-2024-13986High· 8.8
1y ago

Nagios XI < 2024R1.3.2 contains a remote code execution vulnerability by chaining two flaws: an arbitrary file upload and a path traversal in the Core Config Snapshots interface

Nagios XI < 2024R1.3.2 contains a remote code execution vulnerability by chaining two flaws: an arbitrary file upload and a path traversal in the Core Config Snapshots interface. The issue arises from insufficient validation of file path…

▾ Twilightnagios · nagios_xiEPSS 1.7%via NVD
CVE-2025-54029High· 7.7
1y ago

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in extendons WooCommerce csv import export extendons-eo-wooimport-export allows Path Traversal.This issue affects WooCommerce csv import export:…

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in extendons WooCommerce csv import export extendons-eo-wooimport-export allows Path Traversal.This issue affects WooCommerce csv import export:…

▾ TwilightEPSS 0.38%via NVD
CVE-2025-53588High· 7.7
1y ago

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Dmitry V

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Dmitry V. (CEO of "UKR Solution") UPC/EAN/GTIN Code Generator upc-ean-barcode-generator allows Path Traversal.This issue affects UPC/EAN/GTIN…

▾ TwilightEPSS 0.38%via NVD
CVE-2024-13984None
1y ago

QiAnXin TianQing Management Center versions up to and including 6.7.0.4130 contain a path traversal vulnerability in the rptsvr component that allows unauthenticated attackers to upload files to arbitrary locations on the server

QiAnXin TianQing Management Center versions up to and including 6.7.0.4130 contain a path traversal vulnerability in the rptsvr component that allows unauthenticated attackers to upload files to arbitrary locations on the server. The /rp…

▾ SunlitEPSS 0.82%via NVD
CVE-2024-13981None
1y ago

LiveBOS, an object-oriented business architecture middleware suite developed by Apex Software Co., Ltd., contains an arbitrary file upload vulnerability in its UploadFile.do;.js.jsp endpoint

LiveBOS, an object-oriented business architecture middleware suite developed by Apex Software Co., Ltd., contains an arbitrary file upload vulnerability in its UploadFile.do;.js.jsp endpoint. This flaw affects the LiveBOS Server componen…

▾ SunlitEPSS 0.90%via NVD
CVE-2023-7309None
1y ago

A path traversal vulnerability exists in the Dahua Smart Park Integrated Management Platform (also referred to as the Dahua Smart Campus Integrated Management Platform), affecting the SOAP-based GIS bitmap upload interface

A path traversal vulnerability exists in the Dahua Smart Park Integrated Management Platform (also referred to as the Dahua Smart Campus Integrated Management Platform), affecting the SOAP-based GIS bitmap upload interface. The flaw allo…

▾ SunlitEPSS 0.81%via NVD
CVE-2025-55526Critical· 9.1
1y ago

n8n-workflows Main Commit ee25413 allows attackers to execute a directory traversal via the download_workflow function within api_server.py

n8n-workflows Main Commit ee25413 allows attackers to execute a directory traversal via the download_workflow function within api_server.py

▾ Midnightzie619 · n8n_workflow_collectionEPSS 0.81%via NVD
CVE-2025-34126NonePoC
1y ago

A path traversal vulnerability exists in RIPS Scanner version 0.54

A path traversal vulnerability exists in RIPS Scanner version 0.54. The vulnerability allows remote attackers to read arbitrary files on the system with the privileges of the web server by sending crafted HTTP GET requests to the 'window…

▾ TwilightEPSS 2.1%via NVD
CVE-2025-6020High· 7.8
1y ago

A flaw was found in linux-pam

A flaw was found in linux-pam. The module pam_namespace may use access user-controlled paths without proper protection, allowing local users to elevate their privileges to root via multiple symlink attacks and race conditions.

▾ TwilightRed Hat · linux-pamEPSS 0.46%via NVD
CVE-2025-4748None
1y ago

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Erlang OTP (stdlib modules) allows Absolute Path Traversal, File Manipulation

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Erlang OTP (stdlib modules) allows Absolute Path Traversal, File Manipulation. This vulnerability is associated with program files lib/stdlib…

▾ SunlitEPSS 0.29%via NVD
CWE-22 vulnerabilities (CVEs) — page 33 · VulnSea