VYPR

CWE-29

Path Traversal: '\..\filename'

VariantIncomplete

Description

The product uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize '\..\filename' (leading backslash dot dot) sequences that can resolve to a location that is outside of that directory.

Hierarchy (View 1000)

Parents

Children

none

CVEs mapped to this weakness (71)

page 3 of 4
  • CVE-2025-50185HigJul 26, 2025
    risk 0.46cvss —epss 0.00

    DbGate is cross-platform database manager. In versions 6.6.0 and below, DbGate allows unauthorized file access due to insufficient validation of file paths and types. A user with application-level access can retrieve data from arbitrary files on the system, regardless of their…

  • CVE-2024-51534HigFeb 1, 2025
    risk 0.46cvss 7.1epss 0.00

    Dell PowerProtect DD versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain a path traversal vulnerability. A local low privileged could potentially exploit this vulnerability to gain unauthorized overwrite of OS files stored on the server filesystem. Exploitation…

  • CVE-2023-6831HigDec 15, 2023
    risk 0.46cvss 8.1epss 0.03

    Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.9.2.

  • CVE-2024-3848HigMay 16, 2024
    risk 0.45cvss 7.5epss 0.43

    A path traversal vulnerability exists in mlflow/mlflow version 2.11.0, identified as a bypass for the previously addressed CVE-2023-6909. The vulnerability arises from the application's handling of artifact URLs, where a '#' character can be used to insert a path into the…

  • CVE-2024-2928HigJun 6, 2024
    risk 0.43cvss 7.5epss 0.22

    A Local File Inclusion (LFI) vulnerability was identified in mlflow/mlflow, specifically in version 2.9.2, which was fixed in version 2.11.3. This vulnerability arises from the application's failure to properly validate URI fragments for directory traversal sequences such as…

  • CVE-2025-6209HigJul 7, 2025
    risk 0.42cvss 7.5epss 0.01

    A path traversal vulnerability exists in run-llama/llama_index versions 0.12.27 through 0.12.40, specifically within the `encode_image` function in `generic_utils.py`. This vulnerability allows an attacker to manipulate the `image_path` input to read arbitrary files on the…

  • CVE-2024-8859HigMar 20, 2025
    risk 0.42cvss 7.5epss 0.03

    A path traversal vulnerability exists in mlflow/mlflow version 2.15.1. When users configure and use the dbfs service, concatenating the URL directly into the file protocol results in an arbitrary file read vulnerability. This issue occurs because only the path part of the URL is…

  • CVE-2024-1561HigApr 16, 2024
    risk 0.42cvss 7.5epss 0.09

    An issue was discovered in gradio-app/gradio, where the `/component_server` endpoint improperly allows the invocation of any method on a `Component` class with attacker-controlled arguments. Specifically, by exploiting the `move_resource_to_block_cache()` method of the `Block`…

  • CVE-2023-6977HigDec 20, 2023
    risk 0.42cvss 7.5epss 0.04

    This vulnerability enables malicious users to read sensitive files on the server.

  • CVE-2026-5627HigApr 7, 2026
    risk 0.40cvss 7.2epss 0.01

    A path traversal vulnerability exists in mintplex-labs/anything-llm versions up to and including 1.9.1, within the `AgentFlows` component. The vulnerability arises from improper handling of user input in the `loadFlow` and `deleteFlow` methods in…

  • CVE-2024-8982MedMar 20, 2025
    risk 0.40cvss 6.2epss 0.01

    A Local File Inclusion (LFI) vulnerability in OpenLLM version 0.6.10 allows attackers to include files from the local server through the web application. This flaw could expose internal server files and potentially sensitive information such as configuration files, passwords,…

  • CVE-2025-50184HigJul 26, 2025
    risk 0.39cvss —epss 0.01

    DbGate is cross-platform database manager. In versions 6.4.3-premium-beta.5 and below, DbGate is vulnerable to a directory traversal flaw. The file parameter is not properly restricted to the intended uploads directory. As a result, the endpoint that lists files within the…

  • CVE-2026-10732MedJun 5, 2026
    risk 0.35cvss 6.4epss 0.01

    All versions of the package decompress are vulnerable to Arbitrary File Write via Archive Extraction (Zip Slip) when extracting a ZIP archive containing two entries with the same path - the first being a symlink to an arbitrary target and the second being a regular file - the…

  • CVE-2023-0316MedJan 16, 2023
    risk 0.29cvss 5.5epss 0.01

    Path Traversal: '\..\filename' in GitHub repository froxlor/froxlor prior to 2.0.0.

  • CVE-2019-10743MedOct 29, 2019
    risk 0.29cvss 5.5epss 0.06

    All versions of archiver allow attacker to perform a Zip Slip attack via the "unarchive" functions. It is exploited using a specially crafted zip archive, that holds path traversal filenames. When exploited, a filename in a malicious archive is concatenated to the target…

  • CVE-2022-2788LowAug 19, 2022
    risk 0.25cvss 3.9epss 0.00

    Emerson Electric's Proficy Machine Edition Version 9.80 and prior is vulnerable to CWE-29 Path Traversal: '\..\Filename', also known as a ZipSlip attack, through an upload procedure which enables attackers to implant a malicious .BLZ file on the PLC. The file can transfer…

  • CVE-2024-4841LowJun 23, 2024
    risk 0.22cvss 3.3epss 0.01

    A Path Traversal vulnerability exists in the parisneo/lollms-webui, specifically within the 'add_reference_to_local_mode' function due to the lack of input sanitization. This vulnerability affects versions v9.6 to the latest. By exploiting this vulnerability, an attacker can…

  • CVE-2025-58291LowOct 11, 2025
    risk 0.21cvss 3.3epss 0.00

    Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect availability.

  • CVE-2024-13059HigFeb 10, 2025
    risk 0.02cvss 7.2epss 0.21

    A vulnerability in mintplex-labs/anything-llm prior to version 1.3.1 allows for path traversal due to improper handling of non-ASCII filenames in the multer library. This vulnerability can lead to arbitrary file write, which can subsequently result in remote code execution. The…

  • CVE-2023-1034HigFeb 25, 2023
    risk 0.02cvss 8.8epss 0.28

    Path Traversal: '\..\filename' in GitHub repository salesagility/suitecrm prior to 7.12.9.