Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Tag: path-traversal Clear
ID Title
CVE-2026-12243 Path Traversal in nltk (CVE-2026-12243)
path traversal in nltk (CVE-2026-12243). Confidential information can be exposed externally. Mitigation: upgrade to `3.10.0` or later.
CVE-2026-11720 Path Traversal in path-traversal (CVE-2026-11720)
path traversal in path-traversal (CVE-2026-11720). Confidential information can be exposed externally.
CVE-2026-36848 Gigamon GVOS v5.16.1 and below is vulnerable to Directory Traversal in the GVOS H-VUE subsystem.
Gigamon GVOS v5.16.1 and below is vulnerable to Directory Traversal in the GVOS H-VUE subsystem.
CVE-2026-40521 Path Traversal in path-traversal (CVE-2026-40521)
path traversal in path-traversal (CVE-2026-40521). Successful exploitation can lead to full system takeover.
CVE-2026-57346 Path Traversal in path-traversal (CVE-2026-57346)
path traversal in path-traversal (CVE-2026-57346). Risk of unauthorized operations or information disclosure.
CVE-2026-25707 Vulnerability in path-traversal (CVE-2026-25707)
vulnerability in path-traversal (CVE-2026-25707). Successful exploitation can lead to full system takeover.
CVE-2026-57966 Path Traversal in path-traversal (CVE-2026-57966)
path traversal in path-traversal (CVE-2026-57966). Data can be tampered with by attackers.
CVE-2026-13528 Path Traversal in vue (CVE-2026-13528)
path traversal in vue (CVE-2026-13528). Risk of unauthorized operations or information disclosure.
CVE-2026-13509 Path Traversal in path-traversal (CVE-2026-13509)
path traversal in path-traversal (CVE-2026-13509). Risk of unauthorized operations or information disclosure.
CVE-2026-13503 Path Traversal in path-traversal (CVE-2026-13503)
path traversal in path-traversal (CVE-2026-13503). Risk of unauthorized operations or information disclosure.
CVE-2026-50016 Vulnerability in pnpm (CVE-2026-50016)
vulnerability in pnpm (CVE-2026-50016). Successful exploitation can lead to full system takeover. Exploitable via ``node_modules``. Mitigation: upgrade to `11.4.0` or later.
CVE-2026-29509 Path Traversal in path-traversal (CVE-2026-29509)
path traversal in path-traversal (CVE-2026-29509). Risk of unauthorized operations or information disclosure.
CVE-2026-52884 Vulnerability in cpp (CVE-2026-52884)
vulnerability in cpp (CVE-2026-52884). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8.9.6.2` or later.
CVE-2026-49991 Path Traversal in path-traversal (CVE-2026-49991)
path traversal in path-traversal (CVE-2026-49991). Data can be tampered with by attackers.
CVE-2026-48753 Vulnerability in github.com/lxc/incus/v7/cmd/incusd (CVE-2026-48753)
vulnerability in github.com/lxc/incus/v7/cmd/incusd (CVE-2026-48753). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `7.1.0` or later.
CVE-2026-44024 Path Traversal in fluentd (CVE-2026-44024)
path traversal in fluentd (CVE-2026-44024). Successful exploitation can lead to full system takeover. Exploitable via ``path``. Mitigation: upgrade to `1.19.3` or later.
CVE-2025-64152 Path Traversal in apache (CVE-2025-64152)
path traversal in apache (CVE-2025-64152). Confidential information can be exposed externally.
CVE-2025-55017 Path Traversal in apache (CVE-2025-55017)
path traversal in apache (CVE-2025-55017). Confidential information can be exposed externally.
CVE-2026-13426 Path Traversal in c (CVE-2026-13426)
path traversal in c (CVE-2026-13426). Risk of unauthorized operations or information disclosure.
CVE-2025-10268 Vulnerability in wordpress (CVE-2025-10268)
vulnerability in wordpress (CVE-2025-10268). Risk of unauthorized operations or information disclosure.
CVE-2026-57872 Path Traversal in path-traversal (CVE-2026-57872)
path traversal in path-traversal (CVE-2026-57872). Confidential information can be exposed externally.
CVE-2025-71338 Vulnerability in path-traversal (CVE-2025-71338)
vulnerability in path-traversal (CVE-2025-71338). Successful exploitation can lead to full system takeover.
CVE-2025-71333 Vulnerability in path-traversal (CVE-2025-71333)
vulnerability in path-traversal (CVE-2025-71333). Successful exploitation can lead to full system takeover.
CVE-2025-71324 Vulnerability in path-traversal (CVE-2025-71324)
vulnerability in path-traversal (CVE-2025-71324). Confidential information can be exposed externally.
CVE-2026-40084 Path Traversal in path-traversal (CVE-2026-40084)
path traversal in path-traversal (CVE-2026-40084). Confidential information can be exposed externally.
CVE-2026-54250 Path Traversal in github.com/k3s-io/k3s (CVE-2026-54250)
path traversal in github.com/k3s-io/k3s (CVE-2026-54250). Data can be tampered with by attackers. Exploitable via ``GODEBUG``. Mitigation: upgrade to `1.33.10` or later.
CVE-2026-45233 Path Traversal in path-traversal (CVE-2026-45233)
path traversal in path-traversal (CVE-2026-45233). Data can be tampered with by attackers.
CVE-2026-55439 Path Traversal in path-traversal (CVE-2026-55439)
path traversal in path-traversal (CVE-2026-55439). Confidential information can be exposed externally. Exploitable via `GET /apis/console.api.migration.halo.run/v1alpha1/backups/{name}/files/{filename}`. Mitigation: upgrade to `2.24.3` or later.
CVE-2026-56122 Path Traversal in path-traversal (CVE-2026-56122)
path traversal in path-traversal (CVE-2026-56122). Confidential information can be exposed externally.
CVE-2026-49506 Path Traversal in path-traversal (CVE-2026-49506)
path traversal in path-traversal (CVE-2026-49506). Successful exploitation can lead to full system takeover.
CVE-2026-45188 Vulnerability in apache (CVE-2026-45188)
vulnerability in apache (CVE-2026-45188). Risk of unauthorized operations or information disclosure.
CVE-2026-8662 Path Traversal in path-traversal (CVE-2026-8662)
path traversal in path-traversal (CVE-2026-8662). Risk of unauthorized operations or information disclosure.
CVE-2026-9776 Path Traversal in path-traversal (CVE-2026-9776)
path traversal in path-traversal (CVE-2026-9776). Confidential information can be exposed externally.
CVE-2026-9777 Path Traversal in path-traversal (CVE-2026-9777)
path traversal in path-traversal (CVE-2026-9777). Successful exploitation can lead to full system takeover.
CVE-2026-9775 Path Traversal in path-traversal (CVE-2026-9775)
path traversal in path-traversal (CVE-2026-9775). Data can be tampered with by attackers.
CVE-2026-9778 Path Traversal in path-traversal (CVE-2026-9778)
path traversal in path-traversal (CVE-2026-9778). Successful exploitation can lead to full system takeover.
CVE-2026-9774 Path Traversal in path-traversal (CVE-2026-9774)
path traversal in path-traversal (CVE-2026-9774). Data can be tampered with by attackers.
CVE-2026-39899 Path Traversal in path-traversal (CVE-2026-39899)
path traversal in path-traversal (CVE-2026-39899). Risk of unauthorized operations or information disclosure.
CVE-2026-54066 Path Traversal in github.com/siyuan-note/siyuan/kernel (CVE-2026-54066)
path traversal in github.com/siyuan-note/siyuan/kernel (CVE-2026-54066). Confidential information can be exposed externally. Exploitable via `GET /assets/`. Mitigation: upgrade to `0.0.0-20260628153353-2d5d72223df4` or later.
CVE-2026-57296 Path Traversal in path-traversal (CVE-2026-57296)
path traversal in path-traversal (CVE-2026-57296). Successful exploitation can lead to full system takeover.
CVE-2026-55488 Path Traversal in motioneye (CVE-2026-55488)
path traversal in motioneye (CVE-2026-55488). Risk of unauthorized operations or information disclosure. Exploitable via `GET /movie/`. Mitigation: upgrade to `0.44.0` or later.
CVE-2026-52813 Vulnerability in gogs.io/gogs (CVE-2026-52813)
vulnerability in gogs.io/gogs (CVE-2026-52813). Successful exploitation can lead to full system takeover.
CVE-2026-52802 Open Redirect in gogs.io/gogs (CVE-2026-52802)
vulnerability in gogs.io/gogs (CVE-2026-52802). Risk of unauthorized operations or information disclosure.
CVE-2026-10645 Out-of-Bounds Read in c (CVE-2026-10645)
vulnerability in c (CVE-2026-10645). Risk of unauthorized operations or information disclosure.
CVE-2026-53779 Path Traversal in path-traversal (CVE-2026-53779)
path traversal in path-traversal (CVE-2026-53779). Confidential information can be exposed externally.
CVE-2026-31978 Path Traversal in motioneye (CVE-2026-31978)
path traversal in motioneye (CVE-2026-31978). Confidential information can be exposed externally. Exploitable via ``mediafiles.py``. Mitigation: upgrade to `0.44.0` or later.
CVE-2026-41046 Vulnerability in path-traversal (CVE-2026-41046)
vulnerability in path-traversal (CVE-2026-41046). Risk of unauthorized operations or information disclosure.
CVE-2026-12479 Path Traversal in keras (CVE-2026-12479)
path traversal in keras (CVE-2026-12479). Risk of unauthorized operations or information disclosure. Exploitable via ``DiskIOStore.make``. Mitigation: upgrade to `3.15.0` or later.
CVE-2026-56448 Path Traversal in path-traversal (CVE-2026-56448)
path traversal in path-traversal (CVE-2026-56448). Risk of unauthorized operations or information disclosure.
CVE-2026-42129 The Loki datasource plugin's callResource handler contains a path traversal vulnerability. An...
The Loki datasource plugin's callResource handler contains a path traversal vulnerability. An...

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →