Path Traversal

Directory traversal vulnerabilities
10 CVEs tagged.

CVE-2026-25228 5.0

Signal K Server versions prior to 2.20.3 on Windows systems contain a path traversal vulnerability in the applicationData API. Authenticated users can...

Feb 2, 2026
CVE-2026-25059 8.8

OpenList Frontend versions before 4.1.10 contain a path traversal vulnerability in file operation handlers that allows authenticated attackers to bypa...

Feb 2, 2026
CVE-2025-14914 7.6

This vulnerability allows a privileged user in IBM WebSphere Application Server Liberty to upload a zip archive containing path traversal sequences, w...

Feb 2, 2026
CVE-2026-1703 N/A

This CVE describes a path traversal vulnerability in pip's wheel archive extraction. When installing a maliciously crafted wheel file, attackers can w...

Feb 2, 2026
CVE-2026-1186 N/A

EAP Legislator contains a path traversal vulnerability in its file extraction functionality. Attackers can craft malicious zipx archives that, when op...

Feb 2, 2026
CVE-2022-50950 6.5

Webile 1.0.1 contains an unauthenticated directory traversal vulnerability that allows attackers to manipulate file paths and access sensitive system ...

Feb 1, 2026
CVE-2021-47921 6.5

Free Photo & Video Vault 0.0.2 contains a directory traversal vulnerability that allows remote attackers to manipulate web requests and access sensiti...

Feb 1, 2026
CVE-2026-25069 N/A

SunFounder Pironman Dashboard versions 1.3.13 and earlier contain an unauthenticated path traversal vulnerability in log file API endpoints. Attackers...

Feb 1, 2026
CVE-2025-48783 7.5

This vulnerability allows remote attackers to delete arbitrary files on the Soar Cloud HRD Human Resource Management System by manipulating file paths...

Jun 6, 2025
CVE-2025-48781 7.5

This vulnerability allows remote attackers to read arbitrary files from the Soar Cloud HRD Human Resource Management System by manipulating file paths...

Jun 6, 2025