VYPR

CWE-23

Relative Path Traversal

BaseDraft

Description

The product uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize sequences such as ".." that can resolve to a location that is outside of that directory.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-139 · CAPEC-76

CVEs mapped to this weakness (489)

page 22 of 25
  • CVE-2026-47078MedJul 27, 2026
    risk 0.24cvss epss 0.00

    Relative Path Traversal vulnerability in Erlang OTP (stdlib zip module) allows writing files outside the intended extraction directory via a crafted zip archive. zip:unzip/1,2 and zip:extract/1,2 validate entry paths using zip:check_dir_level/2, which tracks directory depth as…

  • CVE-2023-35816LowApr 28, 2025
    risk 0.23cvss 3.5epss 0.01

    DevExpress before 23.1.3 allows arbitrary TypeConverter conversion.

  • CVE-2024-6985MedOct 11, 2024
    risk 0.22cvss 4.4epss 0.00

    A path traversal vulnerability exists in the api open_personality_folder endpoint of parisneo/lollms-webui. This vulnerability allows an attacker to read any folder in the personality_folder on the victim's computer, even though sanitize_path is set. The issue arises due to…

  • CVE-2026-42085MedMay 4, 2026
    risk 0.21cvss 4.3epss 0.00

    OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. Prior to versions 6.10.5 and 7.0.0-rc3, OpenC3 COSMOS contains a design flaw in the save_tool_config() function that allows saving tool configuration files at…

  • CVE-2025-1584MedFeb 23, 2025
    risk 0.21cvss 4.3epss 0.01

    A vulnerability classified as problematic was found in opensolon Solon up to 3.0.8. This vulnerability affects unknown code of the file solon-projects/solon-web/solon-web-staticfiles/src/main/java/org/noear/solon/web/staticfiles/StaticMappings.java. The manipulation leads to…

  • CVE-2024-22226LowFeb 12, 2024
    risk 0.21cvss 3.3epss 0.00

    Dell Unity, versions prior to 5.4, contain a path traversal vulnerability in its svc_supportassist utility. An authenticated attacker could potentially exploit this vulnerability, to gain unauthorized write access to the files stored on the server filesystem, with elevated…

  • CVE-2023-34117LowJul 11, 2023
    risk 0.21cvss 3.3epss 0.00

    Relative path traversal in the Zoom Client SDK before version 5.15.0 may allow an unauthorized user to enable information disclosure via local access.

  • CVE-2026-59996MedJul 8, 2026
    risk 0.20cvss 4.2epss 0.00

    scp in OpenSSH before 10.4 may place a file in the parent directory of an intended directory when the copy occurs between two remote destinations.

  • CVE-2026-59995MedJul 8, 2026
    risk 0.20cvss 4.2epss 0.00

    sftp in OpenSSH before 10.4 does not properly constrain the location of downloaded files when "sftp server:/path ." is used with an attacker-controlled server.

  • CVE-2025-55013MedAug 9, 2025
    risk 0.20cvss 4.2epss 0.01

    The Assemblyline 4 Service Client interfaces with the API to fetch tasks and publish the result for a service in Assemblyline 4. In versions below 4.6.1.dev138, the Assemblyline 4 Service Client (task_handler.py) accepts a SHA-256 value returned by the service server and uses it…

  • CVE-2026-1762LowFeb 10, 2026
    risk 0.19cvss 2.9epss 0.00

    A vulnerability in GE Vernova Enervista UR Setup on Windows allows File Manipulation.This issue affects Enervista: 8.6 and prior versions.

  • CVE-2025-22873LowFeb 4, 2026
    risk 0.18cvss 3.8epss 0.00

    It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For example, Root.Open("../") would open the parent directory of the Root. This escape only permits opening the parent directory itself, not ancestors of the parent or…

  • CVE-2024-24940LowFeb 6, 2024
    risk 0.18cvss 2.8epss 0.00

    In JetBrains IntelliJ IDEA before 2023.3.3 path traversal was possible when unpacking archives

  • CVE-2025-64757LowNov 19, 2025
    risk 0.16cvss 3.5epss 0.00

    Astro is a web framework. Prior to version 5.14.3, a vulnerability has been identified in the Astro framework's development server that allows arbitrary local file read access through the image optimization endpoint. The vulnerability affects Astro development environments and…

  • CVE-2024-35274LowNov 12, 2024
    risk 0.15cvss 2.3epss 0.00

    An improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability [CWE-22] in Fortinet FortiAnalyzer versions below 7.4.2, Fortinet FortiManager versions below 7.4.2 and Fortinet FortiAnalyzer-BigData version 7.4.0 and below 7.2.7 allows a…

  • CVE-2024-4330LowMay 30, 2024
    risk 0.14cvss 3.3epss 0.00

    A path traversal vulnerability was identified in the parisneo/lollms-webui repository, specifically within version 9.6. The vulnerability arises due to improper handling of user-supplied input in the 'list_personalities' endpoint. By crafting a malicious HTTP request, an…

  • CVE-2023-42456LowSep 21, 2023
    risk 0.14cvss 3.3epss 0.01

    Sudo-rs, a memory safe implementation of sudo and su, allows users to not have to enter authentication at every sudo attempt, but instead only requiring authentication every once in a while in every terminal or process group. Only once a configurable timeout has passed will the…

  • CVE-2022-4123LowDec 8, 2022
    risk 0.14cvss 3.3epss 0.00

    A flaw was found in Buildah. The local path and the lowest subdirectory may be disclosed due to incorrect absolute path traversal, resulting in an impact to confidentiality.

  • CVE-2025-59682LowOct 1, 2025
    risk 0.13cvss 3.1epss 0.01

    An issue was discovered in Django 4.2 before 4.2.25, 5.1 before 5.1.13, and 5.2 before 5.2.7. The django.utils.archive.extract() function, used by the "startapp --template" and "startproject --template" commands, allows partial directory traversal via an archive with file paths…

  • CVE-2026-21620LowFeb 20, 2026
    risk 0.08cvss epss 0.00

    Relative Path Traversal, Improper Isolation or Compartmentalization vulnerability in erlang otp erlang/otp (tftp_file modules), erlang otp inets (tftp_file modules), erlang otp tftp (tftp_file modules) allows Relative Path Traversal. This vulnerability is associated with program…