Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-23 (相对路径遍历) — Vulnerability Class 339

339 vulnerabilities classified as CWE-23 (相对路径遍历). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-15225 Sunnet|WMPro - Arbitrary File Read — WMPro 7.5 High2025-12-29
CVE-2025-15015 Ragic|Enterprise Cloud Database - Arbitrary File Read — Enterprise Cloud Database 7.5 High2025-12-22
CVE-2025-66626 argoproj/argo-workflows is vulnerable to RCE via ZipSlip and symbolic links — argo-workflows 8.1 High2025-12-09
CVE-2025-62552 Microsoft Access Remote Code Execution Vulnerability — Microsoft 365 Apps for Enterprise 7.8 High2025-12-09
CVE-2016-20023 CKSource CKFinder 安全漏洞 — CKFinder 5.0 Medium2025-12-05
CVE-2025-12097 Relative Path Traversal Vulnerability in NI System Web Server — LabVIEW 7.5 High2025-12-04
CVE-2025-13771 Uniong|WebITR - Arbitrary File Read — WebITR 6.5 Medium2025-11-28
CVE-2025-66386 MISP 安全漏洞 — MISP 4.1 Medium2025-11-28
CVE-2025-40605 SonicWALL Email Security 安全漏洞 — Email Security 7.5 -2025-11-20
CVE-2025-64446 Fortinet FortiWeb 安全漏洞 — FortiWeb 9.4 Critical2025-11-14
CVE-2025-13161 IQ Service International|IQ-Support - Arbitrary File Read — IQ-Support 7.5 High2025-11-14
CVE-2025-64714 PrivateBin's template-switching feature allows arbitrary local file inclusion through path traversal — PrivateBin 5.8 Medium2025-11-13
CVE-2025-58463 Download Station — Download Station 6.5 -2025-11-07
CVE-2025-58464 QuMagie — QuMagie 7.5 -2025-11-07
CVE-2025-46363 Dell Secure Connect Gateway 安全漏洞 — Secure Connect Gateway SCG 5.0 Application and Appliance 4.3 Medium2025-10-30
CVE-2025-55752 Apache Tomcat: Directory traversal via rewrite with possible RCE if PUT is enabled — Apache Tomcat 9.8AICriticalAI2025-10-27
CVE-2025-60023 AutomationDirect Productivity Suite Relative Path Traversal — Productivity Suite 4.0 Medium2025-10-23
CVE-2025-59776 AutomationDirect Productivity Suite Relative Path Traversal — Productivity Suite 4.0 Medium2025-10-23
CVE-2025-58429 AutomationDirect Productivity Suite Relative Path Traversal — Productivity Suite 7.5 High2025-10-23
CVE-2025-58078 AutomationDirect Productivity Suite Relative Path Traversal — Productivity Suite 7.5 High2025-10-23
CVE-2025-58456 AutomationDirect Productivity Suite Relative Path Traversal — Productivity Suite 6.8 Medium2025-10-23
CVE-2025-62498 AutomationDirect Productivity Suite Relative Path Traversal — Productivity Suite 8.8 High2025-10-23
CVE-2025-11898 Flowring Technology|Agentflow - Arbitrary File Reading through Path Traversal — Agentflow 7.5 High2025-10-17
CVE-2025-10249 Slider Revolution <= 6.7.37 - Missing Authorization to Authenticated (Contributor+) Arbitrary File Read — Slider Revolution 6.5 Medium2025-10-09
CVE-2025-62187 Ankitects Anki 安全漏洞 — Anki 2.9 Low2025-10-07
CVE-2025-59835 LangBot has a cross-directory file upload vulnerability, which could lead to system takeover — LangBot 8.8AIHighAI2025-10-02
CVE-2025-59682 Django 安全漏洞 — Django 3.1 Low2025-10-01
CVE-2025-60020 NNCP 安全漏洞 — NNCP 6.4 Medium2025-09-24
CVE-2025-59341 Local File Inclusion in esm.sh — esm.sh 7.5AIHighAI2025-09-17
CVE-2025-59456 JetBrains TeamCity 安全漏洞 — TeamCity 5.5 Medium2025-09-17

Vulnerabilities classified as CWE-23 (相对路径遍历) represent 339 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.