CWE-22: Path Traversal

The product uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize sequences that can resolve to a location outside of that directory.

1,987
Total CVEs
446
Critical
1,002
High
7.6
Avg CVSS
4
In CISA KEV

Yearly Trend

2026
231
2025
685
2024
481
2023
231
2022
165

Top Affected Vendors

1 Apple 26
2 Qnap 21
3 Ivanti 18
4 Fortinet 16
5 Samsung 16
6 Solarwinds 16
7 Fedoraproject 16
8 Siemens 15
9 Adobe 15
10 Debian 13

All Path Traversal CVEs (1,987)

CVE-2025-69770
10.0

This zip slip vulnerability in MojoPortal CMS allows attackers to upload malicious zip files that extract to arbitrary locations on the server, potent...

Feb 13, 2026
CVE-2025-64075
10.0

A path traversal vulnerability in the ZBT WE2001 router's check_token function allows remote attackers to bypass authentication by manipulating sessio...

Feb 11, 2026
CVE-2026-24897
10.0

CVE-2026-24897 is a critical path traversal vulnerability in Erugo file-sharing platform that allows authenticated low-privileged users to upload arbi...

Jan 28, 2026
CVE-2025-58321
10.0

Delta Electronics DIALink has a directory traversal authentication bypass vulnerability that allows attackers to access restricted files and bypass au...

Sep 11, 2025
CVE-2025-54261
10.0

This critical path traversal vulnerability in Adobe ColdFusion allows attackers to escape restricted directories and execute arbitrary code on affecte...

Sep 9, 2025
CVE-2025-52562
10.0

This is a critical directory traversal vulnerability in Convoy KVM server management panel that allows unauthenticated remote attackers to include and...

Jun 23, 2025
CVE-2025-26615
10.0

A path traversal vulnerability in WeGIA's examples.php endpoint allows attackers to read the config.php file, which contains database credentials. Thi...

Feb 18, 2025
CVE-2024-43955
10.0

CVE-2024-43955 is an unauthenticated path traversal vulnerability in the Droip WordPress plugin that allows attackers to download or delete arbitrary ...

Aug 29, 2024
CVE-2024-40628
10.0

This critical vulnerability in JumpServer allows attackers to read arbitrary files from the Celery container, which runs with root privileges and data...

Jul 18, 2024
CVE-2024-37902
10.0

This vulnerability in DeepJavaLibrary (DJL) allows attackers to overwrite system files by exploiting improper path validation when extracting archived...

Jun 17, 2024
CVE-2024-2227
10.0

This vulnerability allows attackers to access arbitrary files on the application server file system through a path traversal flaw in JavaServer Faces ...

Mar 22, 2024
CVE-2024-23652
10.0

This vulnerability in BuildKit allows malicious Dockerfiles or BuildKit frontends using RUN --mount to delete arbitrary files on the host system. It a...

Jan 31, 2024
CVE-2023-26045
10.0

This vulnerability in NodeBB forum software allows attackers to execute arbitrary JavaScript files on the server through a path traversal attack combi...

Jul 24, 2023
CVE-2023-2825
10.0

CVE-2023-2825 is a critical path traversal vulnerability in GitLab CE/EE version 16.0.0 that allows unauthenticated attackers to read arbitrary files ...

May 26, 2023
CVE-2020-29495
10.0

CVE-2020-29495 is a critical OS command injection vulnerability in Dell EMC Avamar Server's Fitness Analyzer component. Remote unauthenticated attacke...

Jan 14, 2021
CVE-2026-24849
9.9

CVE-2026-24849 is an arbitrary file read vulnerability in OpenEMR's EtherFaxActions.php. Any authenticated user, regardless of privilege level, can ex...

Feb 25, 2026
CVE-2026-25592
9.9

CVE-2026-25592 is an arbitrary file write vulnerability in Microsoft's Semantic Kernel .NET SDK that allows attackers to write files to arbitrary loca...

Feb 6, 2026
CVE-2026-0963
9.9

An input neutralization vulnerability in Crafty Controller's File Operations API Endpoint allows authenticated attackers to perform path traversal att...

Jan 30, 2026
CVE-2025-54347
9.9

A directory traversal vulnerability in Desktop Alert PingAlert Application Server versions 6.1.0.11 to 6.1.1.2 allows attackers to write arbitrary fil...

Nov 24, 2025
CVE-2025-61913
9.9

This vulnerability in Flowise allows authenticated attackers to read and write arbitrary files anywhere on the file system due to insufficient path re...

Oct 8, 2025
CVE-2025-30841
9.9

This path traversal vulnerability in the Countdown & Clock WordPress plugin allows attackers to include arbitrary files from the server, potentially l...

Apr 1, 2025
CVE-2025-20051
9.9

This vulnerability in Mattermost Boards allows authenticated users to read arbitrary files on the server by duplicating specially crafted blocks. It a...

Feb 24, 2025
CVE-2025-25279
EPSS 29.3% 9.9

This vulnerability in Mattermost Boards allows attackers to read arbitrary files on the server by importing specially crafted board archives. It affec...

Feb 24, 2025
CVE-2024-33109
9.9

This critical vulnerability allows attackers to perform directory traversal attacks through the ringtone upload function in Tiptel IP 286 phones. Atta...

Sep 19, 2024
CVE-2024-3980
9.9

CVE-2024-3980 is a path traversal vulnerability in MicroSCADA Pro/X SYS600 that allows authenticated users to manipulate file paths, potentially acces...

Aug 27, 2024
CVE-2024-34762
9.9

This vulnerability allows attackers with contributor-level access to WordPress sites to perform path traversal attacks, leading to local file inclusio...

Jun 10, 2024
CVE-2024-4701
9.9

A path traversal vulnerability in Genie allows attackers to access files outside intended directories, potentially leading to remote code execution. A...

May 14, 2024
CVE-2024-25693
9.9

This path traversal vulnerability in Esri Portal for ArcGIS allows authenticated attackers to access files outside intended directories, potentially l...

Apr 4, 2024
CVE-2024-27102
9.9

This vulnerability in Pterodactyl Wings allows authenticated attackers with server access to read files outside their allocated sandbox directory, pot...

Mar 13, 2024
CVE-2023-6825
9.9

This vulnerability in File Manager and File Manager Pro WordPress plugins allows directory traversal attacks via the target parameter. Attackers can r...

Mar 13, 2024
CVE-2024-0402
9.9

This critical vulnerability in GitLab allows authenticated users to write files to arbitrary locations on the server while creating a workspace, enabl...

Jan 26, 2024
CVE-2023-41373
9.9

This CVE describes a directory traversal vulnerability in the BIG-IP Configuration Utility that allows authenticated attackers to execute arbitrary co...

Oct 10, 2023
CVE-2023-42657
9.9

A directory traversal vulnerability in WS_FTP Server allows attackers to perform file operations (delete, rename, create, remove) outside their author...

Sep 27, 2023
CVE-2023-38702
9.9

This vulnerability allows authenticated users with low privileges to upload malicious JSP files to the Knowage server via an unauthorized endpoint, le...

Aug 4, 2023
CVE-2022-24877
9.9

This path traversal vulnerability in Flux's kustomize-controller allows attackers to read sensitive files from the controller's pod filesystem by expl...

May 6, 2022
CVE-2022-24900
9.9

CVE-2022-24900 is a critical path traversal vulnerability in Piano LED Visualizer software versions 1.3 and earlier. It allows attackers to read arbit...

Apr 29, 2022
CVE-2021-32008
9.9

This vulnerability allows authenticated GateManager administrators to delete system files or directories through improper pathname restrictions. It af...

Mar 4, 2022
CVE-2021-40358
9.9

This is a critical path traversal vulnerability (CWE-22) in Siemens SIMATIC PCS 7 and WinCC systems that allows attackers to bypass directory restrict...

Nov 9, 2021
CVE-2021-38163
9.9

CVE-2021-38163 is a critical vulnerability in SAP NetWeaver Visual Composer that allows authenticated non-administrative users to upload malicious fil...

Sep 14, 2021
CVE-2021-32016
9.9

This vulnerability in JUMP AMS allows attackers to write arbitrary files to any location on the filesystem via directory traversal in a SOAP endpoint....

Aug 3, 2021
CVE-2026-25785
9.8

A path traversal vulnerability in Lanscope Endpoint Manager (On-Premises) Sub-Manager Server allows attackers to access arbitrary files outside intend...

Feb 25, 2026
CVE-2025-69874
9.8

CVE-2025-69874 is a critical path traversal vulnerability in nanotar that allows attackers to write arbitrary files outside the intended extraction di...

Feb 11, 2026
CVE-2026-25895
9.8

CVE-2026-25895 is a path traversal vulnerability in FUXA web-based SCADA/HMI software that allows unauthenticated remote attackers to write arbitrary ...

Feb 9, 2026
CVE-2025-64712
9.8

A path traversal vulnerability in the unstructured library's partition_msg function allows attackers to write or overwrite arbitrary files on the file...

Feb 4, 2026
CVE-2025-66480
9.8

This CVE describes a critical path traversal vulnerability in Wildfire IM's file upload functionality that allows attackers to write arbitrary files a...

Feb 2, 2026
CVE-2026-24770
9.8

CVE-2026-24770 is a critical Zip Slip vulnerability in RAGFlow's MinerU parser that allows attackers to overwrite arbitrary files on the server via ma...

Jan 27, 2026
CVE-2026-24479
9.8

This vulnerability allows attackers to achieve remote code execution by uploading malicious ZIP archives containing path traversal sequences. The flaw...

Jan 27, 2026
CVE-2025-14301
9.8

This vulnerability in the Integration Opvius AI for WooCommerce WordPress plugin allows unauthenticated attackers to perform path traversal attacks. A...

Jan 14, 2026
CVE-2025-68705
9.8

CVE-2025-68705 is a path traversal vulnerability in RustFS's /rustfs/rpc/read_file_stream endpoint that allows attackers to read arbitrary files on th...

Jan 7, 2026
CVE-2022-50796
9.8

This vulnerability allows unauthenticated attackers to execute arbitrary code on SOUND4 IMPACT/FIRST/PULSE/Eco systems by exploiting a path traversal ...

Dec 30, 2025

About Path Traversal (CWE-22)

The product uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize sequences that can resolve to a location outside of that directory.

Our database tracks 1,987 CVEs classified as CWE-22, with 446 rated critical and 1,002 rated high severity. The average CVSS score for Path Traversal vulnerabilities is 7.6.

External reference: View CWE-22 on MITRE CWE →

Monitor Path Traversal Vulnerabilities

Get alerted when new Path Traversal CVEs affect your infrastructure.

Start Monitoring Free