Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-43772 |
|
Path Traversal in path-traversal (CVE-2026-43772)
path traversal in path-traversal (CVE-2026-43772). Confidential information can be exposed externally.
|
| CVE-2026-66397 |
|
Path Traversal in path-traversal (CVE-2026-66397)
path traversal in path-traversal (CVE-2026-66397). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-47078 |
|
Vulnerability in path-traversal (CVE-2026-47078)
vulnerability in path-traversal (CVE-2026-47078). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-66050 |
|
Path Traversal in path-traversal (CVE-2026-66050)
path traversal in path-traversal (CVE-2026-66050). Data can be tampered with by attackers.
|
| CVE-2025-59181 |
|
Vulnerability in path-traversal (CVE-2025-59181)
vulnerability in path-traversal (CVE-2025-59181). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-17514 |
|
Path Traversal in path-traversal (CVE-2026-17514)
path traversal in path-traversal (CVE-2026-17514). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65765 |
|
Path Traversal in path-traversal (CVE-2026-65765)
path traversal in path-traversal (CVE-2026-65765). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-64400 |
|
Vulnerability in path-traversal (CVE-2026-64400)
vulnerability in path-traversal (CVE-2026-64400). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-14955 |
|
Path Traversal in wordpress (CVE-2026-14955)
path traversal in wordpress (CVE-2026-14955). Confidential information can be exposed externally.
|
| CVE-2026-61632 |
|
Path Traversal in pymdown-extensions (CVE-2026-61632)
path traversal in pymdown-extensions (CVE-2026-61632). Risk of unauthorized operations or information disclosure. Exploitable via ``b64``. Mitigation: upgrade to `11.0.0` or later.
|
| CVE-2026-66004 |
|
Path Traversal in path-traversal (CVE-2026-66004)
path traversal in path-traversal (CVE-2026-66004). Data can be tampered with by attackers.
|
| CVE-2026-66007 |
|
Path Traversal in path-traversal (CVE-2026-66007)
path traversal in path-traversal (CVE-2026-66007). Confidential information can be exposed externally.
|
| CVE-2026-66140 |
|
Vulnerability in path-traversal (CVE-2026-66140)
vulnerability in path-traversal (CVE-2026-66140). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15420 |
|
Path Traversal in wordpress (CVE-2026-15420)
path traversal in wordpress (CVE-2026-15420). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-16767 |
|
Path Traversal in path-traversal (CVE-2026-16767)
path traversal in path-traversal (CVE-2026-16767). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65694 |
|
Path Traversal in path-traversal (CVE-2026-65694)
path traversal in path-traversal (CVE-2026-65694). Confidential information can be exposed externally.
|
| CVE-2026-65920 |
|
Path Traversal in path-traversal (CVE-2026-65920)
path traversal in path-traversal (CVE-2026-65920). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-65702 |
|
Path Traversal in path-traversal (CVE-2026-65702)
path traversal in path-traversal (CVE-2026-65702). Data can be tampered with by attackers.
|
| CVE-2026-65701 |
|
Path Traversal in path-traversal (CVE-2026-65701)
path traversal in path-traversal (CVE-2026-65701). Confidential information can be exposed externally.
|
| CVE-2026-65700 |
|
Path Traversal in path-traversal (CVE-2026-65700)
path traversal in path-traversal (CVE-2026-65700). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65698 |
|
Path Traversal in path-traversal (CVE-2026-65698)
path traversal in path-traversal (CVE-2026-65698). Confidential information can be exposed externally.
|
| CVE-2026-65695 |
|
Path Traversal in path-traversal (CVE-2026-65695)
path traversal in path-traversal (CVE-2026-65695). Confidential information can be exposed externally.
|
| CVE-2026-65688 |
|
Path Traversal in path-traversal (CVE-2026-65688)
path traversal in path-traversal (CVE-2026-65688). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65689 |
|
Path Traversal in path-traversal (CVE-2026-65689)
path traversal in path-traversal (CVE-2026-65689). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65690 |
|
Path Traversal in path-traversal (CVE-2026-65690)
path traversal in path-traversal (CVE-2026-65690). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65687 |
|
Path Traversal in path-traversal (CVE-2026-65687)
path traversal in path-traversal (CVE-2026-65687). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65607 |
|
Path Traversal in path-traversal (CVE-2026-65607)
path traversal in path-traversal (CVE-2026-65607). Confidential information can be exposed externally.
|
| CVE-2026-65896 |
|
Vulnerability in path-traversal (CVE-2026-65896)
vulnerability in path-traversal (CVE-2026-65896). Data can be tampered with by attackers. Exploitable via `POST /pages/{route}/move`.
|
| CVE-2026-16078 |
|
Path Traversal in wordpress (CVE-2026-16078)
path traversal in wordpress (CVE-2026-16078). Confidential information can be exposed externally.
|
| CVE-2026-64872 |
|
Custom purge and log paths could escape the site webroot directory.
Custom purge and log paths could escape the site webroot directory.
|
| CVE-2026-15786 |
|
Path Traversal in wordpress (CVE-2026-15786)
path traversal in wordpress (CVE-2026-15786). Confidential information can be exposed externally.
|
| CVE-2026-15074 |
|
@fastify/static vulnerable to route guard bypass via path traversal
@fastify/static vulnerable to route guard bypass via path traversal
|
| CVE-2026-16653 |
|
Path Traversal in c (CVE-2026-16653)
path traversal in c (CVE-2026-16653). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-60835 |
|
An issue in the unrar.dll component of IZArc v4.6 allows attackers to execute a path traversal.
An issue in the unrar.dll component of IZArc v4.6 allows attackers to execute a path traversal.
|
| CVE-2026-13186 |
|
Path Traversal in path-traversal (CVE-2026-13186)
path traversal in path-traversal (CVE-2026-13186). Successful exploitation can lead to full system takeover.
|
| CVE-2026-65600 |
|
Path Traversal in github.com/traefik/traefik/v2 (CVE-2026-65600)
path traversal in github.com/traefik/traefik/v2 (CVE-2026-65600). Risk of unauthorized operations or information disclosure. Exploitable via `GET /api../admin`. Mitigation: upgrade to `2.11.52` or later.
|
| CVE-2026-44192 |
|
Path Traversal in path-traversal (CVE-2026-44192)
path traversal in path-traversal (CVE-2026-44192). Confidential information can be exposed externally.
|
| CVE-2026-30633 |
|
Path Traversal in path-traversal (CVE-2026-30633)
path traversal in path-traversal (CVE-2026-30633). Confidential information can be exposed externally.
|
| CVE-2026-50757 |
|
Path Traversal in path-traversal (CVE-2026-50757)
path traversal in path-traversal (CVE-2026-50757). Successful exploitation can lead to full system takeover.
|
| CVE-2026-30632 |
|
Path Traversal in path-traversal (CVE-2026-30632)
path traversal in path-traversal (CVE-2026-30632). Confidential information can be exposed externally.
|
| CVE-2026-63454 |
|
Path Traversal in path-traversal (CVE-2026-63454)
path traversal in path-traversal (CVE-2026-63454). Successful exploitation can lead to full system takeover.
|
| CVE-2026-15724 |
|
Vulnerability in path-traversal (CVE-2026-15724)
vulnerability in path-traversal (CVE-2026-15724). Confidential information can be exposed externally.
|
| CVE-2026-64825 |
|
Path Traversal in homeassistant (CVE-2026-64825)
path traversal in homeassistant (CVE-2026-64825). Data can be tampered with by attackers. Mitigation: upgrade to `2026.6.0` or later.
|
| CVE-2026-64824 |
|
Path Traversal in path-traversal (CVE-2026-64824)
path traversal in path-traversal (CVE-2026-64824). Successful exploitation can lead to full system takeover.
|
| CVE-2026-56452 |
|
Path Traversal in c (CVE-2026-56452)
path traversal in c (CVE-2026-56452). Data can be tampered with by attackers.
|
| CVE-2026-56623 |
|
Path Traversal in apache (CVE-2026-56623)
path traversal in apache (CVE-2026-56623). Confidential information can be exposed externally.
|
| CVE-2026-60027 |
|
Path Traversal in path-traversal (CVE-2026-60027)
path traversal in path-traversal (CVE-2026-60027). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-46555 |
|
Path Traversal in path-traversal (CVE-2026-46555)
path traversal in path-traversal (CVE-2026-46555). Confidential information can be exposed externally. Exploitable via `Host header`.
|
| CVE-2026-32820 |
|
Path Traversal in rails (CVE-2026-32820)
path traversal in rails (CVE-2026-32820). Confidential information can be exposed externally. Exploitable via ``docs``.
|
| CVE-2026-51026 |
|
Vulnerability in path-traversal (CVE-2026-51026)
vulnerability in path-traversal (CVE-2026-51026). Confidential information can be exposed externally.
|