Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Tag: cwe-22 Clear
ID Title
CVE-2026-82460 Path Traversal in path-traversal (CVE-2026-82460)
path traversal in path-traversal (CVE-2026-82460). Successful exploitation can lead to full system takeover.
CVE-2026-61800 Path Traversal in CVE-2026-61800 (CVE-2026-61800)
path traversal in CVE-2026-61800 (CVE-2026-61800). Successful exploitation can lead to full system takeover.
CVE-2026-75337 Path Traversal in path-traversal (CVE-2026-75337)
path traversal in path-traversal (CVE-2026-75337). Successful exploitation can lead to full system takeover.
CVE-2026-47884 Path Traversal in spring (CVE-2026-47884)
path traversal in spring (CVE-2026-47884). Successful exploitation can lead to full system takeover.
CVE-2026-80104 Path Traversal in CVE-2026-80104 (CVE-2026-80104)
path traversal in CVE-2026-80104 (CVE-2026-80104). Successful exploitation can lead to full system takeover.
CVE-2026-66897 Path Traversal in path-traversal (CVE-2026-66897)
path traversal in path-traversal (CVE-2026-66897). Successful exploitation can lead to full system takeover.
CVE-2026-77086 Path Traversal in path-traversal (CVE-2026-77086)
path traversal in path-traversal (CVE-2026-77086). Successful exploitation can lead to full system takeover.
CVE-2026-69400 Path Traversal in path-traversal (CVE-2026-69400)
path traversal in path-traversal (CVE-2026-69400). Successful exploitation can lead to full system takeover.
CVE-2026-48024 Path Traversal in CVE-2026-48024 (CVE-2026-48024)
path traversal in CVE-2026-48024 (CVE-2026-48024). Successful exploitation can lead to full system takeover.
CVE-2026-53451 Path Traversal in path-traversal (CVE-2026-53451)
path traversal in path-traversal (CVE-2026-53451). Successful exploitation can lead to full system takeover.
CVE-2026-18051 Path Traversal in wordpress (CVE-2026-18051)
path traversal in wordpress (CVE-2026-18051). Data can be tampered with by attackers.
CVE-2026-47627 Path Traversal in path-traversal (CVE-2026-47627)
path traversal in path-traversal (CVE-2026-47627). Successful exploitation can lead to full system takeover.
CVE-2026-52610 Path Traversal in path-traversal (CVE-2026-52610)
path traversal in path-traversal (CVE-2026-52610). Confidential information can be exposed externally.
CVE-2026-42162 Path Traversal in CVE-2026-42162 (CVE-2026-42162)
path traversal in CVE-2026-42162 (CVE-2026-42162). Confidential information can be exposed externally.
CVE-2026-19725 Path Traversal in wordpress (CVE-2026-19725)
path traversal in wordpress (CVE-2026-19725). Confidential information can be exposed externally.
CVE-2026-14524 Path Traversal in wordpress (CVE-2026-14524)
path traversal in wordpress (CVE-2026-14524). Data can be tampered with by attackers.
CVE-2026-18855 Path Traversal in wordpress (CVE-2026-18855)
path traversal in wordpress (CVE-2026-18855). Data can be tampered with by attackers.
CVE-2026-14484 Path Traversal in wordpress (CVE-2026-14484)
path traversal in wordpress (CVE-2026-14484). Data can be tampered with by attackers.
CVE-2026-17181 Path Traversal in path-traversal (CVE-2026-17181)
path traversal in path-traversal (CVE-2026-17181). Data can be tampered with by attackers.
CVE-2026-72850 Path Traversal in CVE-2026-72850 (CVE-2026-72850)
path traversal in CVE-2026-72850 (CVE-2026-72850). Successful exploitation can lead to full system takeover.
CVE-2026-66898 Path Traversal in path-traversal (CVE-2026-66898)
path traversal in path-traversal (CVE-2026-66898). Successful exploitation can lead to full system takeover.
CVE-2026-73034 Path Traversal in path-traversal (CVE-2026-73034)
path traversal in path-traversal (CVE-2026-73034). Successful exploitation can lead to full system takeover.
CVE-2026-47754 Path Traversal in tomcat (CVE-2026-47754)
path traversal in tomcat (CVE-2026-47754). Confidential information can be exposed externally. Exploitable via ``archiveEntryName``.
CVE-2026-72569 Path Traversal in path-traversal (CVE-2026-72569)
path traversal in path-traversal (CVE-2026-72569). Data can be tampered with by attackers.
CVE-2026-72567 Path Traversal in path-traversal (CVE-2026-72567)
path traversal in path-traversal (CVE-2026-72567). Successful exploitation can lead to full system takeover.
CVE-2026-50540 Vulnerability in CVE-2026-50540 (CVE-2026-50540)
vulnerability in CVE-2026-50540 (CVE-2026-50540). Confidential information can be exposed externally.
CVE-2026-19264 Path Traversal in CVE-2026-19264 (CVE-2026-19264)
path traversal in CVE-2026-19264 (CVE-2026-19264). Successful exploitation can lead to full system takeover.
CVE-2026-53976 Path Traversal in path-traversal (CVE-2026-53976)
path traversal in path-traversal (CVE-2026-53976). Confidential information can be exposed externally.
CVE-2026-17556 Path Traversal in path-traversal (CVE-2026-17556)
path traversal in path-traversal (CVE-2026-17556). Data can be tampered with by attackers.
CVE-2026-9195 Path Traversal in CVE-2026-9195 (CVE-2026-9195)
path traversal in CVE-2026-9195 (CVE-2026-9195). Confidential information can be exposed externally.
CVE-2026-71268 Path Traversal in CVE-2026-71268 (CVE-2026-71268)
path traversal in CVE-2026-71268 (CVE-2026-71268). Successful exploitation can lead to full system takeover.
CVE-2026-16940 Path Traversal in wordpress (CVE-2026-16940)
path traversal in wordpress (CVE-2026-16940). Data can be tampered with by attackers.
CVE-2026-69110 Path Traversal in CVE-2026-69110 (CVE-2026-69110)
path traversal in CVE-2026-69110 (CVE-2026-69110). Confidential information can be exposed externally. Exploitable via `GET /api/tmp/`.
CVE-2026-52680 Path Traversal in apache (CVE-2026-52680)
path traversal in apache (CVE-2026-52680). Successful exploitation can lead to full system takeover.
CVE-2026-15435 Path Traversal in ibm (CVE-2026-15435)
path traversal in ibm (CVE-2026-15435). Successful exploitation can lead to full system takeover.
CVE-2026-59310 KEV [KEV] Path Traversal in Broadcom path-traversal (CVE-2026-59310)
path traversal in Broadcom path-traversal (CVE-2026-59310). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
CVE-2026-67429 Path Traversal in flyto-core (CVE-2026-67429)
path traversal in flyto-core (CVE-2026-67429). Data can be tampered with by attackers. Exploitable via ``image.download``. Mitigation: upgrade to `2.26.7` or later.
CVE-2026-14973 Path Traversal in ibm (CVE-2026-14973)
path traversal in ibm (CVE-2026-14973). Confidential information can be exposed externally.
CVE-2026-64740 Path Traversal in apple (CVE-2026-64740)
path traversal in apple (CVE-2026-64740). Successful exploitation can lead to full system takeover.
CVE-2026-64731 Path Traversal in apple (CVE-2026-64731)
path traversal in apple (CVE-2026-64731). Successful exploitation can lead to full system takeover.
CVE-2026-65701 Path Traversal in path-traversal (CVE-2026-65701)
path traversal in path-traversal (CVE-2026-65701). Confidential information can be exposed externally.
CVE-2026-65700 Path Traversal in path-traversal (CVE-2026-65700)
path traversal in path-traversal (CVE-2026-65700). Successful exploitation can lead to full system takeover.
CVE-2026-65688 Path Traversal in path-traversal (CVE-2026-65688)
path traversal in path-traversal (CVE-2026-65688). Successful exploitation can lead to full system takeover.
CVE-2026-65687 Path Traversal in path-traversal (CVE-2026-65687)
path traversal in path-traversal (CVE-2026-65687). Successful exploitation can lead to full system takeover.
CVE-2026-65689 Path Traversal in path-traversal (CVE-2026-65689)
path traversal in path-traversal (CVE-2026-65689). Successful exploitation can lead to full system takeover.
CVE-2026-59555 Unauthenticated Arbitrary File Deletion in Participants Database <= 2.7.8.3 versions.
Unauthenticated Arbitrary File Deletion in Participants Database <= 2.7.8.3 versions.
CVE-2026-65431 Path Traversal in CVE-2026-65431 (CVE-2026-65431)
path traversal in CVE-2026-65431 (CVE-2026-65431). Successful exploitation can lead to full system takeover.
CVE-2026-73653 Path Traversal in @vitest/browser (CVE-2026-73653)
path traversal in @vitest/browser (CVE-2026-73653). Confidential information can be exposed externally. Exploitable via ``allowWrite``. Mitigation: upgrade to `5.0.0-beta.6` or later.
CVE-2026-64825 Path Traversal in homeassistant (CVE-2026-64825)
path traversal in homeassistant (CVE-2026-64825). Data can be tampered with by attackers. Mitigation: upgrade to `2026.6.0` or later.
CVE-2026-12701 Path Traversal in path-traversal (CVE-2026-12701)
path traversal in path-traversal (CVE-2026-12701). Data can be tampered with by attackers.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →