VYPR

CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

BaseStableLikelihood: High

Description

The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-126 · CAPEC-64 · CAPEC-76 · CAPEC-78 · CAPEC-79

CVEs mapped to this weakness (10,395)

page 76 of 520
  • CVE-2026-32477HigAug 24, 2026
    risk 0.56cvss 8.6epss 0.00

    Unauthenticated Arbitrary File Deletion in ShopBuilder Pro – Elementor WooCommerce Builder Addons <= 2.2.0 versions.

  • CVE-2026-28171HigAug 24, 2026
    risk 0.56cvss 8.6epss 0.00

    Unauthenticated Arbitrary File Deletion in WooCommerce File Approval <= 10.7 versions.

  • CVE-2026-16616HigAug 19, 2026
    risk 0.56cvss 8.6epss 0.01

    The Simple File List WordPress plugin through 6.3.11 does not validate the source path of a file-move operation reachable by unauthenticated users, allowing them to read arbitrary files on the server and to relocate critical files out of the web root, leading to sensitive…

  • CVE-2026-48441HigAug 11, 2026
    risk 0.56cvss 8.6epss 0.00

    Lightroom Classic is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the…

  • CVE-2026-18953HigAug 5, 2026
    risk 0.56cvss 8.6epss 0.00

    Improper limitation of a pathname to a restricted directory in the get_resource tool in Amazon awslabs.aws-transform-mcp-server 0.1.0 through 0.1.4 might allow a context-dependent actor to write arbitrary files outside the intended working directory via the savePath parameter. …

  • CVE-2026-11974HigJul 29, 2026
    risk 0.56cvss 8.6epss 0.00

    The wp-media-folder-addon WordPress plugin before 4.1.7 does not validate a user-supplied parameter before using it in a file read operation in two AJAX actions available to unauthenticated users, leading to Arbitrary File Disclosure and Server-Side Request Forgery on sites…

  • CVE-2026-48350HigJul 14, 2026
    risk 0.56cvss 8.6epss 0.00

    Animate is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to access sensitive files or…

  • CVE-2026-48310HigJul 14, 2026
    risk 0.56cvss 8.6epss 0.01

    Adobe Experience Manager is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside…

  • CVE-2026-58192HigJul 8, 2026
    risk 0.56cvss 8.6epss 0.00

    Appium is a cross-platform automation framework for all kinds of apps, built on top of the W3C WebDriver protocol. Prior to 1.1.6, the Appium storage plugin exposes POST /storage/delete, whose handler passes the user-supplied name value directly into path.join(storageRoot, name)…

  • CVE-2026-55117HigJul 2, 2026
    risk 0.56cvss 8.6epss 0.01

    A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi Access Application to access files on the host device.

  • CVE-2026-27400HigJun 17, 2026
    risk 0.56cvss 8.6epss 0.01

    Unauthenticated Arbitrary File Deletion in BookPro <= 1.1.0 versions.

  • CVE-2025-69139HigJun 17, 2026
    risk 0.56cvss 8.6epss 0.01

    Unauthenticated Arbitrary File Deletion in Car Zone <= 3.7 versions.

  • CVE-2026-40769HigJun 15, 2026
    risk 0.56cvss 8.6epss 0.00

    Unauthenticated Arbitrary File Deletion in Contact Form Extender for Divi – Save Entries, File Upload & Country Code Field <= 1.0.6 versions.

  • CVE-2026-47368HigJun 12, 2026
    risk 0.56cvss 8.6epss 0.00

    A malicious actor with access to the network could exploit a Path Traversal vulnerability found in certain devices running UniFi OS to obtain data from such UniFi OS devices or instances.

  • CVE-2026-42737HigMay 27, 2026
    risk 0.56cvss 8.6epss 0.00

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in e4jvikwp VikBooking Hotel Booking Engine & PMS vikbooking allows Path Traversal.This issue affects VikBooking Hotel Booking Engine & PMS: from n/a through <= 1.8.9.

  • CVE-2026-42048CriMay 12, 2026
    risk 0.56cvss 9.6epss 0.04

    Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.0, Langflow is vulnerable to Path Traversal in the Knowledge Bases API (DELETE /api/v1/knowledge_bases). This occurs because user-supplied knowledge base names are concatenated directly…

  • CVE-2026-32522HigMar 25, 2026
    risk 0.56cvss 8.6epss 0.00

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in vanquish WooCommerce Support Ticket System woocommerce-support-ticket-system allows Path Traversal.This issue affects WooCommerce Support Ticket System: from n/a through < 18.5.

  • CVE-2026-31913HigMar 25, 2026
    risk 0.56cvss 8.6epss 0.00

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Whitebox-Studio Scape scape allows Path Traversal.This issue affects Scape: from n/a through < 1.5.16.

  • CVE-2026-33513HigMar 23, 2026
    risk 0.56cvss 8.6epss 0.01

    WWBN AVideo is an open source video platform. In versions up to and including 26.0, an unauthenticated API endpoint (`APIName=locale`) concatenates user input into an `include` path with no canonicalization or whitelist. Path traversal is accepted, so arbitrary PHP files under…

  • CVE-2026-28679HigMar 6, 2026
    risk 0.56cvss 8.6epss 0.00

    Home-Gallery.org is a self-hosted open-source web gallery to browse personal photos and videos. Prior to version 1.21.0, when a user requests a download, the application does not verify whether the requested file is located within the media source directory, which can result in…