CWE-59

Medium likelihood

Improper Link Resolution Before File Access ('Link Following')

Parent: CWE-706 - Use of Incorrectly-Resolved Name or Reference

The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.

1,418 vulnerabilities with CWE-59
CVE-2026-29786
node-tar <7.5.10 - Path Traversal
CVE-2026-27748 HIGH
Avira Internet Security - Privilege Escalation
CVSS 7.8
CVE-2026-27905 HIGH
BentoML <1.4.36 - Path Traversal
CVSS 7.8
CVE-2026-25906 HIGH
Dell Optimizer <6.3.1 - Privilege Escalation
CVSS 7.3
CVE-2025-66680 HIGH
WiseCleaner Wise Force Deleter <=7.3.2 - Arbitrary File Deletion
CVSS 7.1
CVE-2025-48582 HIGH
Android - Privilege Escalation
CVSS 8.4
CVE-2026-27967 HIGH
Zed <0.225.9 - Path Traversal
CVSS 7.1
CVE-2025-63946 HIGH
Tencent PC Manager <17.10.28554.205 - Privilege Escalation
CVSS 7.4
CVE-2025-63945 HIGH
Tencent iOA thru 210.9.28693.621001 - Privilege Escalation
CVSS 7.4
CVE-2026-2490 MEDIUM
RustDesk Client for Windows - Info Disclosure
CVSS 5.5
CVE-2026-2627 HIGH
Softland FBackup <9.9 - Path Traversal
CVSS 7.8
CVE-2026-26225
Intego Personal Backup - Privilege Escalation
CVE-2026-20610 HIGH
macOS Tahoe <26.3 - Privilege Escalation
CVSS 7.8
CVE-2025-66277 CRITICAL
QNAP OS - Path Traversal
CVSS 9.8
CVE-2026-21517 MEDIUM
Windows App for Mac - Privilege Escalation
CVSS 4.7
CVE-2025-62676 HIGH
Fortinet Forticlient < 7.2.13 - Symlink Following
CVSS 7.1
CVE-2025-15314 MEDIUM
Tanium - Path Traversal
CVSS 5.5
CVE-2025-15313 MEDIUM
Tanium EUSS - Path Traversal
CVSS 5.5
CVE-2025-15310 HIGH
Tanium Patch Endpoint Tools - Privilege Escalation
CVSS 7.8
CVE-2025-15319 HIGH
Tanium Patch Endpoint Tools - Privilege Escalation
CVSS 7.8
CVE-2025-15318 MEDIUM
Tanium - Path Traversal
CVSS 5.5
CVE-2026-21419 MEDIUM
Dell Display and Peripheral Manager <2.2 - Privilege Escalation
CVSS 6.6
CVE-2025-15328 MEDIUM
Enforce < 2.7.314 - Symlink Following
CVSS 5.0
CVE-2025-15324 MEDIUM
Tanium Engage < 1.3.37 - Symlink Following
CVSS 6.6
CVE-2026-24884 HIGH
NPM Compressing < 2.0.1 - Symlink Following
CVSS 8.4
Details
Vulnerabilities 1,418
Exploit Likelihood Medium