Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3334

3334 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-10232 299ko FileManagerAPIController.php delete path traversal — 299ko 5.4 Medium2025-09-10
CVE-2025-41714 Path Traversal via 'Upload-Key' in SmartEMS Upload Handling — SmartEMS Web Application 8.8 High2025-09-10
CVE-2025-23343 NVIDIA NVDebug 路径遍历漏洞 — NVDebug tool 7.6 High2025-09-09
CVE-2025-34176 Netgate pfSense CE Suricata Package v7.0.8_2 Directory Traversal Information Disclosure — pfSense CE 4.3AIMediumAI2025-09-09
CVE-2025-34173 Netgate pfSense CE Snort package v4.1.6_25 Directory Traversal Information Disclosure — pfSense CE 4.3AIMediumAI2025-09-09
CVE-2025-47415 RECWAVE Filepath Traversal — TOUCHSCREENS x60, x70 series 7.5AIHighAI2025-09-09
CVE-2025-54261 ColdFusion | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22) — ColdFusion 10.0 Critical2025-09-09
CVE-2025-58755 MONAI has path traversal issue that may lead to arbitrary file writes — MONAI 8.8 High2025-09-08
CVE-2025-58751 Vite middleware may serve files starting with the same name with the public directory — vite 5.3AIMediumAI2025-09-08
CVE-2025-5993 Path Traversal in ITCube CRM — ITCube CRM 7.5AIHighAI2025-09-08
CVE-2025-58438 internetarchive is vulnerable to Directory Traversal through file downloads — internetarchive 8.8AIHighAI2025-09-06
CVE-2025-9566 Podman: podman kube play command may overwrite host files 8.1 High2025-09-05
CVE-2025-48395 Eaton NMC G2 安全漏洞 — NMC G2 4.7 Medium2025-09-05
CVE-2025-41035 Path Traversal vulnerability in appRain CMF — appRain CMF 6.5 -2025-09-04
CVE-2025-58355 Soft Serve is vulnerable to arbitrary file writing through its SSH API — soft-serve 7.7 High2025-09-03
CVE-2025-7039 Glib: buffer under-read on glib through glib/gfileutils.c via get_tmp_file() — Red Hat Enterprise Linux 10 3.7 Low2025-09-03
CVE-2025-7975 Anritsu ShockLine CHX File Parsing Directory Traversal Remote Code Execution Vulnerability — ShockLine 7.8 -2025-09-02
CVE-2025-58162 MobSF Vulnerable to Arbitrary File Write (AR-Slip) via Absolute Path in .a Extraction — Mobile-Security-Framework-MobSF 6.5 Medium2025-09-02
CVE-2025-58161 MobSF Path Traversal in GET /download/<filename> using absolute filenames — Mobile-Security-Framework-MobSF 6.5AIMediumAI2025-09-02
CVE-2025-9801 SimStudioAI sim path traversal — sim 5.4 Medium2025-09-01
CVE-2025-58158 Harness Affected by Arbitrary File Write in Gitness LFS server — harness 8.8 High2025-08-29
CVE-2025-52861 VioStor — VioStor 6.5 -2025-08-29
CVE-2025-33038 Qsync Central — Qsync Central 7.5 -2025-08-29
CVE-2025-33037 Qsync Central — Qsync Central 7.5 -2025-08-29
CVE-2025-33036 Qsync Central — Qsync Central 7.5 -2025-08-29
CVE-2025-33033 Qsync Central — Qsync Central 7.5 -2025-08-29
CVE-2025-33032 QTS, QuTS hero — QTS 4.9 -2025-08-29
CVE-2025-30271 QTS, QuTS hero — QTS 6.5 -2025-08-29
CVE-2025-30270 QTS, QuTS hero — QTS 6.5 -2025-08-29
CVE-2025-9650 yeqifu carRental AppFileUtils.java removeFileByPath path traversal — carRental 5.4 Medium2025-08-29

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3334 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.