Weaknesses of type CWE-22
4,791 resultsCVE-2025-7712CRITICALMadara - Core <= 2.2.3 - Unauthenticated Arbitrary File DeletionEPSS 0.8%CVE-2024-1165MEDIUMBrizy – Page Builder <= 2.4.39 - Authenticated (Contributor+) Directory TraversalEPSS 0.8%CVE-2021-43988MEDIUMICSA-22-109-03 FANUC ROBOGUIDE Simulation PlatformEPSS 0.8%CVE-2023-45689—Arbitrary file read via path traversal in Titan MFT and Titan SFTP serversEPSS 0.8%CVE-2023-43044MEDIUMIBM License Metric Tool directory traversalEPSS 0.8%CVE-2024-51747CRITICALArbitrary File Read and Delete in kanboardEPSS 0.8%CVE-2026-4280MEDIUMBreaking News WP <= 1.3 - Missing Authorization to Authenticated (Subscriber+) Local File Inclusion/ReadEPSS 0.8%CVE-2025-11914MEDIUMShenzhen Ruiming Technology Streamax Crocus DeviceFileReport.do download path traversalEPSS 0.8%CVE-2024-58310HIGHAPC Network Management Card 4 Path Traversal via Directory TraversalEPSS 0.8%CVE-2024-11992CRITICALPath traversal vulnerability in Quick.CMSEPSS 0.8%CVE-2024-54004MEDIUMJenkins Filesystem List Parameter Plugin 0.0.14 and earlier does not restrict the path used for the File system objects list Parameter, alloEPSS 0.8%CVE-2025-22923HIGHAn issue in OS4ED openSIS v8.0 through v9.1 allows attackers to execute a directory traversal and delete files by sending a crafted POST reqEPSS 0.8%CVE-2026-6403HIGHQuick Playground <= 1.3.3 - Unauthenticated Path Traversal to Arbitrary File Read via 'stylesheet' ParameterEPSS 0.8%CVE-2024-10804HIGHUltimate Video Player <= 10.0 - Unauthenticated Arbitrary File DownloadEPSS 0.8%CVE-2024-0380MEDIUMWP Recipe Maker <= 9.1.0 - Directory TraversalEPSS 0.8%CVE-2024-27771HIGHUnitronics Unistream Unilogic – Versions prior to 1.35.227 CWE-22: 'Path Traversal'EPSS 0.8%CVE-2023-32110HIGHWordPress JupiterX theme <= 3.0.0 - Auth. Local File Inclusion vulnerabilityEPSS 0.8%CVE-2025-2707MEDIUMzhijiantianya ruoyi-vue-pro Front-End Store Interface upload path traversalEPSS 0.8%CVE-2025-67076HIGHDirectory traversal vulnerability in Omnispace Agora Project before 25.10 allowing unauthenticated attackers to read files on the system viaEPSS 0.8%CVE-2025-2708MEDIUMzhijiantianya ruoyi-vue-pro Backend File Upload Interface upload path traversalEPSS 0.8%