CWE-59

Medium likelihood

Improper Link Resolution Before File Access ('Link Following')

Parent: CWE-706 - Use of Incorrectly-Resolved Name or Reference

The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.

1,612 vulnerabilities with CWE-59
CVE-2026-41091 HIGH KEV
Microsoft Defender Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-43619 MEDIUM
Rsync < 3.4.3 Symlink Race Condition via Path-Based Syscalls
CVSS 6.3
CVE-2026-34883 MEDIUM
Portrait Dell Color Management < 3.7.0 - Privilege Escalation via Symbolic Link Attack
CVSS 5.3
CVE-2026-8784 MEDIUM
npitre cramfs-tools cramfsck.c change_file_status symlink
CVSS 4.2
CVE-2026-45539 HIGH
Microsoft APM: Symlinks under `.apm/prompts/` and `.apm/agents/` are dereferenced during `apm install`, copying host-local file contents into the project tree
CVSS 7.4
CVE-2026-44471 HIGH
gitoxide: Symlink prefix-reuse allows worktree escape during checkout
CVSS 7.8
CVE-2026-43998 HIGH
vm2: NodeVM require.root bypass via symlink traversal allows sandbox escape
CVSS 8.5
CVE-2026-44470 HIGH
Claude Desktop: Local Privilege Escalation via Directory Junction in CoworkVMService
CVSS 7.8
CVE-2026-8052 MEDIUM
Nomad's exec2 task driver vulnerable to arbitrary file read/write on client host through symlink attack
CVSS 6.0
CVE-2026-6959 MEDIUM
Nomad vulnerable to arbitrary file read/write on client host through symlink attack
CVSS 6.0
CVE-2026-44220 LOW
ciguard: discover_pipeline_files follows symlinks out of scan root
CVSS 3.2
CVE-2026-41610 MEDIUM
Visual Studio Code Security Feature Bypass Vulnerability
CVSS 6.3
CVE-2026-43989 HIGH
JunoClaw: upload_wasm accepted arbitrary filesystem paths without validation
CVSS 8.5
CVE-2026-5061 MEDIUM
Consul-template vulnerable to sandbox path bypass in file helper via a symlink attack
CVSS 4.7
CVE-2026-42574 HIGH
apko 0.14.8-1.2.4 dirFS - Symlink Path Traversal
CVSS 7.5
CVE-2026-44340 HIGH
PraisonAI: Symlink-extraction bypass of `_safe_extractall` writes outside `dest_dir`
CVSS 7.5
CVE-2026-39819 MEDIUM
Invoking "go bug" follows symlinks in predictable temporary filenames in cmd/go
CVSS 5.3
CVE-2026-7832 HIGH
IObit Advanced SystemCare Service ASC.exe symlink
CVSS 7.0
CVE-2026-41882 HIGH
JetBrains IntelliJ IDEA <2024.3.7.1 - Path Traversal
CVSS 7.4
CVE-2026-7397 MEDIUM
NousResearch hermes-agent file_tools.py _check_sensitive_path symlink
CVSS 4.4
CVE-2026-27105 MEDIUM
Dell/Alienware Purchased Apps < 1.1.31.0 - Arbitrary File Write via Improper Link Resolution
CVSS 6.3
CVE-2026-5161 HIGH
Improper Authentication in TUBITAK BILGEM's Pardus About
CVSS 8.8
CVE-2026-41397 MEDIUM
OpenClaw < 2026.3.31 - Sandbox Escape via Unrestricted File Sync and Symlink Traversal
CVSS 6.8
CVE-2026-41364 HIGH
OpenClaw < 2026.3.31 - Arbitrary File Write via Symlink Following in SSH Sandbox Tar Upload
CVSS 8.1
CVE-2026-40977 MEDIUM
Spring Boot <4.0.6 - File Corruption
CVSS 4.7
Details
Vulnerabilities 1,612
Exploit Likelihood Medium