Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-22 (对路径名的限制不恰当(路径遍历)) — Vulnerability Class 3352

3352 vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-67488 SiYuan: ZipSlip -> Arbitrary File Overwrite -> RCE — siyuan 7.8 High2025-12-09
CVE-2025-11531 HP System Event Utility and Omen Gaming Hub – Potential Arbitrary Code Execution — HP System Event Utility 8.4AIHighAI2025-12-09
CVE-2025-60024 Fortinet FortiVoice 路径遍历漏洞 — FortiVoice 7.7 High2025-12-09
CVE-2025-13661 Ivanti Endpoint Manager 路径遍历漏洞 — Endpoint Manager 7.1 High2025-12-09
CVE-2025-14311 JMRI 安全漏洞 — JMRI 6.5AIMediumAI2025-12-09
CVE-2025-14306 Directory Traversal in Robocode's CacheCleaner Component — Robocode 9.1AICriticalAI2025-12-09
CVE-2025-14224 Yottamaster DM2/DM3/DM200 File Upload path traversal — DM2 4.3 Medium2025-12-08
CVE-2025-14220 ORICO CD3510 File Upload path traversal — CD3510 4.3 Medium2025-12-08
CVE-2025-14182 Sobey Media Convergence System upload path traversal — Media Convergence System 6.3 Medium2025-12-07
CVE-2025-13377 10Web Booster <= 2.32.7 - Authenticated (Subscriber+) Arbitrary Folder Deletion via two_clear_page_cache — 10Web Booster – Website speed optimization, Cache & Page Speed optimizer 9.6 Critical2025-12-06
CVE-2025-14111 Rarlab RAR App com.rarlab.rar path traversal — RAR App 5.0 Medium2025-12-05
CVE-2025-54160 Synology BeeDrive 路径遍历漏洞 — BeeDrive for desktop 7.8 High2025-12-04
CVE-2025-29846 Synology Router Manager 路径遍历漏洞 — Synology Router Manager (SRM) 7.2 High2025-12-04
CVE-2025-29845 Synology Router Manager 路径遍历漏洞 — Synology Router Manager (SRM) 4.3 Medium2025-12-04
CVE-2025-29844 Synology Router Manager 路径遍历漏洞 — Synology Router Manager (SRM) 4.3 Medium2025-12-04
CVE-2025-29843 Synology Router Manager 路径遍历漏洞 — Synology Router Manager (SRM) 5.4 Medium2025-12-04
CVE-2025-13645 Modula 2.13.1 - 2.13.2 - Authenticated (Author+) Arbitrary File Deletion — Image Gallery – Photo Grid & Video Gallery 7.2 High2025-12-03
CVE-2025-13876 Rareprob HD Video Player All Formats App com.rocks.music.videoplayer path traversal — HD Video Player All Formats App 5.3 Medium2025-12-02
CVE-2025-13875 Yohann0617 oci-helper OCI Configuration Upload OciServiceImpl.java addCfg path traversal — oci-helper 6.3 Medium2025-12-02
CVE-2025-13879 Directory traversal vulnerability in EfficientIP's SOLIDserver IPAM — SOLIDserver IPAM 4.9AIMediumAI2025-12-02
CVE-2025-66410 Gin-vue-admin has an arbitrary file deletion vulnerability — gin-vue-admin 9.1AICriticalAI2025-12-01
CVE-2025-66302 Grav vulnerable to Path Traversal allowing server files backup — grav 6.8 Medium2025-12-01
CVE-2025-66300 Grav is vulnerable to Arbitrary File Read — grav 8.5 High2025-12-01
CVE-2025-66295 Grav vulnerable to Path traversal / arbitrary YAML write via user creation leading to Account Takeover / System Corruption — grav 8.8 High2025-12-01
CVE-2025-66206 Frappe vulnerable to a path traversal allowing reading certain files — frappe 6.8 Medium2025-12-01
CVE-2025-13816 moxi159753 Mogu Blog v2 ZIP File unzipFile FileOperation.unzip path traversal — Mogu Blog v2 6.3 Medium2025-12-01
CVE-2025-13810 jsnjfz WebStack-Guns KaptchaController.java renderPicture path traversal — WebStack-Guns 5.3 Medium2025-12-01
CVE-2025-13791 Scada-LTS Project Import ZIPProjectManager.java Common.getHomeDir path traversal — Scada-LTS 6.3 Medium2025-11-30
CVE-2025-12638 Path Traversal Vulnerability in keras-team/keras via Tar Archive Extraction in keras.utils.get_file() — keras-team/keras 9.1 -2025-11-28
CVE-2025-59890 Eaton Galileo 安全漏洞 — Eaton Galileo Software 7.3 High2025-11-27

Vulnerabilities classified as CWE-22 (对路径名的限制不恰当(路径遍历)) represent 3352 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.