CWE-22
High likelihoodImproper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.
8,296 vulnerabilities with CWE-22
CVE-2026-3089
Actual Sync Server <26.3.0 - Path Traversal
CVE-2025-41758
HIGH
wwupload.cgi - Path Traversal
CVSS 8.8
CVE-2025-41757
HIGH
UBR - Privilege Escalation
CVSS 8.8
CVE-2025-41755
MEDIUM
wwwubr.cgi - Path Traversal
CVSS 6.5
CVE-2026-3795
MEDIUM
DoraCMS 3.0.x - Path Traversal
CVSS 6.3
CVE-2026-3719
MEDIUM
Tsinghua Unigroup Electronic Archives 3.2.210802 - Path Traversal
CVSS 5.3
CVE-2026-3695
MEDIUM
Modern Image Gallery App 1.0 - Path Traversal
CVSS 6.5
CVE-2026-30848
Parse Server <8.6.8/9.5.0-alpha.8 - Path Traversal
CVE-2026-29786
node-tar <7.5.10 - Path Traversal
CVE-2026-29780
MEDIUM
eml_parser <2.0.1 - Path Traversal
CVSS 5.5
CVE-2026-29190
MEDIUM
Karapace <6.0.0 - Path Traversal
CVSS 4.1
CVE-2026-29185
LOW
Backstage <1.20.1 - Path Traversal
CVSS 2.7
CVE-2025-14675
HIGH
Meta Box Plugin <5.11.1 - Arbitrary File Deletion
CVSS 7.2
CVE-2026-30828
Wallos <4.6.2 - Path Traversal
CVE-2026-29790
dbt-common <1.34.2/1.37.3 - Path Traversal
CVE-2026-29064
HIGH
Zarf 0.54.0-0.73.0 - Path Traversal
CVSS 8.2
CVE-2018-25194
HIGH
Nominas 0.27 - SQL Injection
CVSS 8.2
CVE-2018-25184
MEDIUM
Surreal ToDo 0.6.1.2 - Path Traversal
CVSS 6.2
CVE-2018-25181
HIGH
Musicco 2.0.0 - Path Traversal
CVSS 7.5
CVE-2018-25178
HIGH
Easyndexer 1.0 - Path Traversal
CVSS 7.5
CVE-2026-29059
Windmill <1.603.3 - Path Traversal
CVE-2026-29065
changedetection.io <0.54.4 - Path Traversal
CVE-2026-28800
MEDIUM
Natro Macro <1.1.0 - Unauthenticated RCE
CVSS 6.4
CVE-2026-28795
OpenChatBI <0.2.2 - Path Traversal
CVE-2026-28679
HIGH
Home-Gallery.org <1.21.0 - Path Traversal
CVSS 8.6
Details
Vulnerabilities
8,296
Exploit Likelihood
High