CWE-22
High likelihoodImproper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.
9,576 vulnerabilities with CWE-22
CVE-2026-57321
HIGH
WordPress H5P plugin <= 1.17.7 - Arbitrary File Deletion vulnerability
CVSS 7.1
CVE-2026-56066
MEDIUM
WordPress ShortPixel Adaptive Images plugin <= 3.11.4 - Arbitrary File Deletion vulnerability
CVSS 5.8
CVE-2026-13426
MEDIUM
Client4 fails to validate path parameters
CVSS 5.4
CVE-2026-57872
HIGH
GV-LPC2011/LPC2211 - unauthorized directory traversal vulnerability (get_fcont.cgi)
CVSS 7.5
CVE-2026-40084
MEDIUM
Cacti: Arbitrary File Read via Path Traversal in Report `format_file` Parameter
CVSS 6.5
CVE-2026-56445
CRITICAL
pydicom pynetdicom Library Path Traversal
CVSS 9.1
CVE-2026-55667
HIGH
File Browser: Out-of-scope file deletion by a Create-only scoped user via symlink-following RemoveAll in upload failure-cleanup
CVSS 8.2
CVE-2026-54917
CRITICAL
SeaweedFS: Path traversal in the S3 and Iceberg REST gateways allows cross-bucket access
CVSS 10.0
CVE-2026-54250
MEDIUM
K3s < 1.35.3/1.34.6/1.33.10 - etcd Snapshot ZIP Path Traversal
CVSS 5.8
CVE-2026-54094
HIGH
File Browser: Symlink following lets scoped users read, overwrite, and share files outside their filebrowser scope
CVSS 7.5
CVE-2026-54093
MEDIUM
File Browser: Path traversal in download-as-zip/tar via Windows-style backslash separators in stored filenames
CVE-2026-53925
HIGH
Glances: Arbitrary file write and command execution via `secure_popen` redirection and chaining operators in AMP command configuration
CVSS 7.8
CVE-2026-50548
CRITICAL
Cursor Desktop sandbox escape via agent-controlled working directory
CVSS 9.8
CVE-2026-55700
HIGH
pnpm: stage download writes outside destination via manifest version traversal
CVSS 7.1
CVE-2026-55699
MEDIUM
pnpm: reserved bin name deletes PNPM_HOME during global remove
CVSS 6.5
CVE-2026-50015
HIGH
pnpm: Arbitrary File Write/Delete via Malicious Patch File (Path Traversal)
CVSS 7.3
CVE-2026-9083
MEDIUM
Keycloak: keycloak: information disclosure through arbitrary filesystem path probing
CVSS 4.9
CVE-2026-55439
MEDIUM
Halo: Path Traversal in Backup Download Leads to Arbitrary File Read
CVSS 5.5
CVE-2026-55092
HIGH
Trivy: Path traversal via a crafted vulnerability database or other downloaded artifacts
CVSS 7.5
CVE-2026-45233
HIGH
HTMLy CMS 3.1.1 Path Traversal via oldfile Parameter in Autosave
CVSS 8.1
CVE-2026-48944
MEDIUM
Joomla Extension - getk2.com - Exposure of sensitive files via attachment copy in K2 extension for Joomla < 2.26
CVSS 6.5
CVE-2026-56122
HIGH
Winstone Servlet Engine 0.9.10 Path Traversal via HTTP Request Paths
CVSS 7.5
CVE-2026-56054
HIGH
WordPress JS Help Desk plugin <= 3.1.1 - Arbitrary File Deletion vulnerability
CVSS 7.7
CVE-2026-49506
HIGH
Dell Wyse Management Suite - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVSS 7.2
CVE-2026-8662
LOW
Path Traversal in Rapid7 InsightConnect Compression Plugin
CVSS 3.3
Details
Vulnerabilities
9,576
Exploit Likelihood
High