Skip to main content

CVE detail

CVE-2026-70337

Relative path traversal in Microsoft PowerShell Core allows an unauthorized attacker to execute code over a network.

CVSS 8.8 · HighBuzz score 21.9

Buzz score

Why this CVE is surfacing

Buzz score total 21.9

This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.

Buzz score components · mention 13.9 · diversity 8.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Mention score
13.9
3 evidence mentions in the snapshot
Diversity score
8.0
3 sources across 1 categories
KEV score
0.0
No KEV entry observed
OTX score
0.0
0 OTX pulses
PoC score
0.0
0 repos · best confidence N/A
Best PoC traction
0
Maximum stars on a matched PoC repo

Why it matters now

Mention timeline

Total mentions
3
within the 30d window
Peak daily
3
highest bucket

Evidence

Source links by recency

Newest mentions first
3 source links · newest first
  • ktop browser security patches so far this month. SharePoint: critical RCE chain by Rapid7 Today sees the publication of CVE-2026-63520 , a high-severity remote code execution in Microsoft SharePoint. Discovered by Rapid7 Senior Principal Security Researcher Stephen Fewer , and published today in coordination with Microsoft; this vulnerability is the se

    vendorwww.rapid7.comAug 11, 2026, 9:10 PM
  • The August 2026 Security Update ReviewZero Day Initiative

    g actively exploited, at least as 0-days. Again, we’ll start with the bug under active attack and move on from there. - CVE-2026-68820 - Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability This bug allows attackers to execute code at SYSTEM level. Bugs of this type are often paired with code execution bugs to take over a

    vendorwww.thezdi.comAug 11, 2026, 5:56 PM
  • Relative path traversal in Microsoft PowerShell Core allows an unauthorized attacker to execute code over a network.

    vendormsrc.microsoft.comAug 11, 2026, 2:00 PM

Exploit code

Public exploit repository references

Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.

0 repository references · best confidence N/A · max 0 stars
No public PoC repositories have been matched yet.

Related records

Similar CVEs

6 related CVEs with shared weakness or product evidence
  • CVE-2026-72677

    Relative Path Traversal (CWE-23) in Kibana can lead to the unauthorized deletion of Kibana resources via Relative Path Traversal (CAPEC-139). Kibana Fleet accepted a user-supplied…

    CVSS 7.3 · High
    1 mention
  • CVE-2026-16230

    The Formidable Digital Signatures plugin for WordPress is vulnerable to file deletion due to insufficient file path validation in the delete_file function in all versions up to, a…

    CVSS 9.8 · Critical
    3 mentions
  • CVE-2026-65810

    Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally.

    CVSS 7.8 · High
    3 mentions
  • CVE-2026-62837

    Relative path traversal in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network.

    CVSS 6.5 · Medium
    5 mentions
  • CVE-2026-53416

    Path traversal in Zoom VDI Client and Plugins may allow an authenticated user to conduct information disclosure via local access.

    CVSS 7.1 · High
    3 mentions
  • CVE-2026-16053

    Zohocorp ManageEngine M365 Manager Plus and M365 Security Plus versions below 4820 are affected to Authenticated Path Traversal vulnerability in Exchange Online backup module.

    CVSS 8.5 · High
    1 mention