VYPR

CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

BaseStableLikelihood: High

Description

The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-126 · CAPEC-64 · CAPEC-76 · CAPEC-78 · CAPEC-79

CVEs mapped to this weakness (10,485)

page 344 of 525
  • CVE-2026-70449MedAug 31, 2026
    risk 0.34cvss 5.3epss 0.01

    Improper validation of resource URL attributes in Apache Wicket allows an unauthenticated remote attacker to read files from the web application, including files under WEB-INF that the servlet container would not otherwise serve. The locale, style and variation attributes…

  • CVE-2026-81845MedAug 28, 2026
    risk 0.34cvss 6.3epss 0.01

    A vulnerability has been found in arben-adm mcp-sequential-thinking up to 0.5.0. Impacted is the function import_session/export_session of the file mcp_sequential_thinking/server.py of the component Import Session/Export Session. Such manipulation of the argument file_path leads…

  • CVE-2026-81560MedAug 27, 2026
    risk 0.34cvss 5.3epss 0.01

    A vulnerability was identified in blackms aistack up to 1.6.1. Affected by this issue is some unknown functionality of the file src/web/server.ts of the component Static File Handler. Such manipulation of the argument req.url leads to path traversal. The attack can be executed…

  • CVE-2026-81486MedAug 27, 2026
    risk 0.34cvss 5.3epss 0.01

    A vulnerability was detected in bsmi021 mcp-file-context-server 1.0.0. Affected by this issue is the function read_context of the file src/index.ts of the component Path Resolution. Performing a manipulation of the argument path results in path traversal. It is possible to…

  • CVE-2026-81485MedAug 27, 2026
    risk 0.34cvss 5.3epss 0.01

    A security vulnerability has been detected in danielpopamd linkedin-ads-mcp 1.0.0. Affected by this vulnerability is the function fs.readFileSync of the file src/tools/campaign-management.ts of the component Media Upload. Such manipulation of the argument filePath leads to path…

  • CVE-2026-44517MedAug 21, 2026
    risk 0.34cvss 6.3epss 0.00

    Buildah is a tool that facilitates building OCI images. From 1.38.1 until 1.43.2 and 1.44.0, TempDirForURL in define/types.go does not securely confine Git repository subdirectories to the downloaded build context, and downloadToDirectory and stdinToDirectory can follow a…

  • CVE-2026-76337MedAug 19, 2026
    risk 0.34cvss 5.3epss 0.00

    In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user could read JavaScript files outside the Splunk Web static directory. The vulnerability is possible because Splunk Web does not restrict static file requests to the configured static…

  • CVE-2026-19672MedAug 19, 2026
    risk 0.34cvss —epss 0.01

    The tarfile module's tar and data extraction filters created directories outside the destination for members whose name leaves the destination and returns to it, such as ../evil/../dest/sub/file. The containment check used the resolved path, but intermediate directories were…

  • CVE-2026-19827MedAug 14, 2026
    risk 0.34cvss 5.3epss 0.01

    A flaw has been found in alldatacenter alldata up to 0.6.8. This impacts the function FileInputStream of the file /admin/controller/JobLogController.java of the component logDetailCat Endpoint. This manipulation of the argument executorAddress causes path traversal. It is…

  • CVE-2026-72814MedAug 14, 2026
    risk 0.34cvss —epss 0.00

    The actix-files crate (actix_files) before version 0.6.10 contains an information exposure vulnerability. When a non-existing folder is passed as the serve_from argument to Files::new(), the mount path defaults to an empty path; the service then joins the request path with this…

  • CVE-2026-66381MedAug 12, 2026
    risk 0.34cvss 5.3epss 0.00

    A repository reader with cache-deploy permission may access content outside a configured upstream path under specific conditions.

  • CVE-2026-19372MedAug 9, 2026
    risk 0.34cvss 5.3epss 0.00

    A security flaw has been discovered in Handwriting-OCR handwriting-ocr-mcp-server 0.1.0. Affected by this vulnerability is the function fs.readFileSync of the file src/index.ts of the component upload_document. Performing a manipulation of the argument File results in path…

  • CVE-2026-19371MedAug 9, 2026
    risk 0.34cvss 5.3epss 0.00

    A vulnerability was identified in Nikolaibibo claude-comfyui-mcp 1.0.0. Affected is the function copyFileSync of the file src/tools/utils.ts of the component comfy_upload_image. Such manipulation of the argument image_path leads to path traversal. An attack has to be approached…

  • CVE-2026-19370MedAug 9, 2026
    risk 0.34cvss 5.3epss 0.00

    A vulnerability was determined in bartekke8it56w2 new-mcp 0.1.0. This impacts the function fs.writeFileSync/fs.existsSync/fs.readFileSync of the file index.ts of the component geminithinking. This manipulation of the argument sessionCommand/sessionPath causes path traversal. The…

  • CVE-2026-19366MedAug 9, 2026
    risk 0.34cvss 5.3epss 0.00

    A flaw has been found in NocteDefensor LudusMCP up to 1.0.24. Affected is an unknown function of the file src/tools/insertCredsRangeConfig.ts of the component insert_creds_range_config. Executing a manipulation of the argument configPath/outputPath can lead to path traversal.…

  • CVE-2026-19365MedAug 9, 2026
    risk 0.34cvss 5.3epss 0.00

    A vulnerability was identified in Ichigo3766 image-gen-mcp 0.1.0. The impacted element is an unknown function of the file src/index.ts of the component upscale_images. Such manipulation of the argument output_path leads to path traversal. The attack must be carried out locally.…

  • CVE-2026-19338MedAug 9, 2026
    risk 0.34cvss 5.3epss 0.00

    A vulnerability was identified in automateyournetwork MCPyATS up to 0.1.4. The affected element is the function processGenerateRequest of the file mcp_servers/mermaid/index.ts of the component generate_mermaid_markdown. The manipulation of the argument folder/name leads to path…

  • CVE-2026-19335MedAug 9, 2026
    risk 0.34cvss 5.3epss 0.00

    A vulnerability has been found in Jane-xiaoer skill-vision-control up to 1.3.0. This vulnerability affects the function getSkillVersionsDir of the file src/svc/utils/config.ts. Such manipulation of the argument skillName leads to path traversal. The attack can only be performed…

  • CVE-2026-19331MedAug 9, 2026
    risk 0.34cvss 5.3epss 0.00

    A vulnerability was identified in bazylhorsey obsidian-mcp-server 1.0.0. This affects the function readCanvas/writeCanvas of the file src/services/CanvasService.ts. Such manipulation leads to path traversal. An attack has to be approached locally. The project was informed of the…

  • CVE-2026-19330MedAug 9, 2026
    risk 0.34cvss 5.3epss 0.00

    A vulnerability was determined in angrysky56 advanced-reasoning-mcp 1.0.0. The impacted element is the function create_system_json/create_library to get_system_json/switch_memory_library of the file src/index.ts. This manipulation causes path traversal. The attack requires local…