Skip to main content

CWE archive

CWE-25 CVEs

Programmatic archive

12 CVEs tagged with CWE-251 Critical, 8 High, 2 Medium, 1 Low, 0 Unrated.

CVE-2026-23877

Published Jan 19, 2026

Swing Music is a self-hosted music player for local audio files. Prior to version 2.1.4, Swing Music's `list_folders()` function in the `/folder/dir-browser` endpoint is vulnerabl…

CVSS 5.3 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2025-68916

Published Dec 24, 2025

Riello UPS NetMan 208 Application before 1.12 allows cgi-bin/certsupload.cgi /../ directory traversal for file upload with resultant code execution.

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-58286

Published Oct 11, 2025

Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect availability.

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-0225

Published Jan 5, 2025

A vulnerability classified as problematic was found in Tsinghua Unigroup Electronic Archives System 3.2.210802(62532). Affected by this vulnerability is an unknown functionality o…

CVSS 5.3 · Medium
evidence mentions
5
Buzz score
24.4

CVE-2023-6947

Published Dec 10, 2024

The Best WordPress Gallery Plugin – FooGallery plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.4.26. This makes it possible for a…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-2442

Published Mar 19, 2024

Franklin Fueling System EVO 550 and EVO 5000 are vulnerable to a Path Traversal vulnerability that could allow an attacker to access sensitive files on the system.

CVSS 7.5 · High

CVE-2023-52138

Published Feb 5, 2024

Engrampa is an archive manager for the MATE environment. Engrampa is found to be vulnerable to a Path Traversal vulnerability that can be leveraged to achieve full Remote Command…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2023-52076

Published Jan 25, 2024

Atril Document Viewer is the default document reader of the MATE desktop environment for Linux. A path traversal and arbitrary file write vulnerability exists in versions of Atril…

CVSS 8.5 · High
Buzz score
6.1
Public PoC observed
Vendor/product tagsBeta · best-effort
Showing 1-12 of 12 CVEsPage 1 of 1