Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
WP Foodbakery <= 4.9 - Authenticated (Subscriber+) Arbitrary File Deletion via via delete_locations_backup_file AJAX Action
Network-AI: AgentRuntime sandbox path-prefix checks allow file access outside the configured base directory
EnvironmentManager.restore() backup ID path traversal copies arbitrary directories into environment data
FileBrowser Quantum's path traversal issue in subtitle handler allows any authenticated user to read arbitrary files
Path traversal and arbitrary file write in the workflow linters of aws-healthomics-mcp-server
File Browser: Archive builder turns backslash filenames into path traversal (zip-slip)
Windows Admin Center (WAC) Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
Windows User Interface Core Elevation of Privilege Vulnerability
Windows PowerShell Remote Code Execution Vulnerability
Game: Age of Empires II: Definitive Edition Remote Code Execution Vulnerability
Path traversal in Ivanti Xtraction before version 2026.2.1 allows a remote authenticated attacker to read arbitrary files outside the web root
Snipe-IT: Directory traversal in displaySig
In JetBrains IntelliJ IDEA before 2026.1.4, 2026.2 code execution via path traversal in project workspace ID handling was possible
Langroid: Path traversal in the file tools allows read/write outside configured current directory
SiYuan: Authenticated path traversal in /snippets/ static handler (serveSnippets) leaks conf/conf.json secrets and siyuan.db
Mockoon: Path traversal in templated `filePath` lets a request escape the served directory (prefix-only base check)
LibreBooking path traversal
Authenticated Path Traversal allows MOVEit admins to view arbitrary system files
scp in OpenSSH before 10.4 may place a file in the parent directory of an intended directory when the copy occurs between two remote destinations
Showing 1 - 20 of 1,000+ results