Skip to main content

CWE archive

CWE-27 CVEs

Programmatic archive

28 CVEs tagged with CWE-276 Critical, 11 High, 10 Medium, 1 Low, 0 Unrated.

CVE-2026-62391

Published Jul 31, 2026

The security fix for CVE-2025-66518 is incomplete. Any client who can access to Apache Kyuubi Server via Kyuubi frontend protocols can bypass server-side config kyuubi.session.loc…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-24457

Published Mar 5, 2026

An unsafe parsing of OpenMQ's configuration, allows a remote attacker to read arbitrary files from a MQ Broker's server. A full exploitation could read unauthorized files of the O…

CVSS 9.1 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-20018

Published Mar 4, 2026

A vulnerability in the sftunnel functionality of Cisco Secure Firewall Management Center (FMC) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an auth…

CVSS 5.9 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2025-66518

Published Jan 5, 2026

Any client who can access to Apache Kyuubi Server via Kyuubi frontend protocols can bypass server-side config kyuubi.session.local.dir.allow.list and use local files which are not…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-58292

Published Oct 11, 2025

Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect availability.

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-10438

Published Sep 25, 2025

Path Traversal: 'dir/../../filename' vulnerability in Yordam Information Technology Consulting Education and Electrical Systems Industry Trade Inc. Yordam Katalog allows Path Trav…

CVSS 8.6 · High
evidence mentions
2
Buzz score
21.0

CVE-2025-58761

Published Sep 9, 2025

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. The `real_pms_image_proxy` endpoint in Tautulli v2.15.3 and prior is vulnerable to path traversal, a…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort

CVE-2025-52237

Published Aug 5, 2025

An issue in the component /stl/actions/download?filePath of SSCMS v7.3.1 allows attackers to execute a directory traversal.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-43658

Published Jan 9, 2025

Patch traversal, External Control of File Name or Path vulnerability in Iocharger Home allows deletion of arbitrary files This issue affects Iocharger firmware for AC model befor…

CVSS 7.2 · High

CVE-2024-51747

Published Nov 11, 2024

Kanboard is project management software that focuses on the Kanban methodology. An authenticated Kanboard admin can read and delete arbitrary files from the server. File attachmen…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2024-7458

Published Aug 4, 2024

A vulnerability was found in elunez eladmin up to 2.7 and classified as critical. This issue affects some unknown processing of the file /api/deploy/upload /api/database/upload of…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-24809

Published Apr 10, 2024

Traccar is an open source GPS tracking system. Versions prior to 6.0 are vulnerable to path traversal and unrestricted upload of file with dangerous type. Since the system allows…

CVSS 8.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2024-20348

Published Apr 3, 2024

A vulnerability in the Out-of-Band (OOB) Plug and Play (PnP) feature of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an unauthenticated, remote attacker to read arbi…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-27764

Published Mar 5, 2024

An issue in Jeewms v.3.7 and before allows a remote attacker to escalate privileges via the AuthInterceptor component.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2024-25828

Published Feb 22, 2024

cmseasy V7.7.7.9 has an arbitrary file deletion vulnerability in lib/admin/template_admin.php.

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-21896

Published Feb 20, 2024

The permission model protects itself against path traversal attacks by calling path.resolve() on any paths given by the user. If the path is to be treated as a Buffer, the impleme…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-52076

Published Jan 25, 2024

Atril Document Viewer is the default document reader of the MATE desktop environment for Linux. A path traversal and arbitrary file write vulnerability exists in versions of Atril…

CVSS 8.5 · High
Buzz score
6.1
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2024-23897

Published Jan 24, 2024

Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an '@' character followed by a file path in an argument with…

CVSS 9.8 · Critical
evidence mentions
16
Buzz score
72.8
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2023-50254

Published Dec 22, 2023

Deepin Linux's default document reader `deepin-reader` software suffers from a serious vulnerability in versions prior to 6.0.7 due to a design flaw that leads to remote command e…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-20127

Published Apr 5, 2023

Multiple vulnerabilities in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager (EPNM) could allow a remote attacker to…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 28 CVEsPage 1 of 2