CWE-59

Medium likelihood

Improper Link Resolution Before File Access ('Link Following')

Parent: CWE-706 - Use of Incorrectly-Resolved Name or Reference

The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.

1,463 vulnerabilities with CWE-59
CVE-2025-11489 MEDIUM
Wonderwhy-er Desktopcommandermcp < 0.2.13 - Symlink Following
CVSS 4.5
CVE-2025-11462 HIGH
AWS VPN Client for macOS <5.2.0 - Privilege Escalation
CVSS 7.8
CVE-2025-41421 MEDIUM
TeamViewer <15.70 - Privilege Escalation
CVSS 4.7
CVE-2025-34194 HIGH
Vasion Virtual Appliance Application - Symlink Following
CVSS 7.8
CVE-2025-34191 HIGH
Vasion Virtual Appliance Application < 20.0.1923 - Symlink Following
CVSS 8.4
CVE-2025-55317 HIGH
Microsoft AutoUpdate - Privilege Escalation
CVSS 7.8
CVE-2025-55245 HIGH
Xbox - Privilege Escalation
CVSS 7.8
CVE-2025-58373 MEDIUM
Roo Code <3.25.23 - Privilege Escalation
CVSS 5.5
CVE-2025-43726 MEDIUM
Dell Alienware Command Center < 5.10.2.0 - Symlink Following
CVSS 6.7
CVE-2025-57749 MEDIUM
N8n < 1.106.0 - Symlink Following
CVSS 6.5
CVE-2025-8612 HIGH
Aomeitech Backupper Workstation - Symlink Following
CVSS 7.3
CVE-2025-5296 HIGH
Link Following - Privilege Escalation
CVSS 7.3
CVE-2025-8959 HIGH
Hashicorp Go-getter < 1.7.9 - Symlink Following
CVSS 7.5
CVE-2025-43490 HIGH
HP Hotkey Support - Privilege Escalation
CVE-2025-55188 LOW
7-Zip <25.01 - Info Disclosure
CVSS 3.6
CVE-2025-54798 LOW
Raszi Tmp < 0.2.4 - Symlink Following
CVSS 2.5
CVE-2025-36611 HIGH
Dell Encryption < 11.11.0.1 - Symlink Following
CVSS 7.3
CVE-2025-43252 MEDIUM
macOS Sequoia <15.6 - Info Disclosure
CVSS 6.5
CVE-2025-43220 CRITICAL
iPadOS <17.7.9 - Info Disclosure
CVSS 9.8
CVE-2025-23267 HIGH
Nvidia-container-toolkit < 1.17.8 - Symlink Following
CVSS 8.5
CVE-2025-7012 HIGH
Cato Networks' CatoClient for Linux <5.5 - Privilege Escalation
CVE-2025-52837 HIGH
Trendmicro Password Manager < 5.8.0.1330 - Symlink Following
CVSS 7.8
CVE-2025-48384 HIGH KEV
Git - Info Disclosure
CVSS 8.0
CVE-2025-49739 HIGH
Microsoft Visual Studio < 15.9.75 - Symlink Following
CVSS 8.8
CVE-2025-49738 HIGH
Microsoft PC Manager < 3.17.4.0 - Symlink Following
CVSS 7.8
Details
Vulnerabilities 1,463
Exploit Likelihood Medium