Fallos del tipo CWE-22

5936 resultados

Travessia de diretório (path traversal)

A aplicação constrói caminhos de arquivo a partir de entrada do usuário sem validar adequadamente sequências como '../' ou símbolos absolutos, permitindo que um atacante acesse arquivos fora do diretório permitido. Isso expõe dados sensíveis ou permite execução não autorizada de operações no sistema de arquivos.

Ejemplo

Um sistema web que serve documentos de um diretório específico recebe a requisição 'GET /doc?file=../../etc/passwd'. Se não validar a entrada, o código resolve o caminho para fora do diretório restrito e vaza o arquivo de senhas do sistema.

Cómo mitigar

Valide caminhos usando listas brancas de nomes de arquivo permitidos, normalize caminhos (remover '../' e símbolos), use APIs que isolem automaticamente operações em diretório base (ex: chroot, sandbox), e evite concatenar entrada direta em construtores de caminhos. Teste com payloads comuns de path traversal em testes de segurança.

CVE-2026-82392HIGHpnpm: Virtual store linker path traversal via unvalidated depPath name in lockfileToDepGraphEPSS 0.6%CVE-2026-19758MEDIUMdromara lamp-cloud chunk-check endpoint FileChunkController.java path traversalEPSS 0.6%CVE-2026-14327HIGHAR for WordPress <= 8.40 - Unauthenticated Arbitrary File Read via 'file' ParameterEPSS 0.6%CVE-2026-19757MEDIUMDromara lamp-cloud File-Upload Controller FileAnyoneController.java path traversalEPSS 0.6%CVE-2026-94044MEDIUM03-lovepreetSingh MCP route.ts create_file path traversalEPSS 0.6%CVE-2026-82100CRITICALDataStage on Cloud Pak for Data has several vulnerabilities due to open source softwareEPSS 0.6%CVE-2026-79622MEDIUMdekdee adobe-xd-mcp file-access-from-request Endpoint xd-parser.ts path traversalEPSS 0.6%CVE-2023-28105HIGHGo-huge-util vulnerable to path traversal when unzipping filesEPSS 0.6%CVE-2023-39299HIGHMusic StationEPSS 0.6%CVE-2025-41368HIGHMultiple vulnerabilities in Small HTTP server by SmallsrvEPSS 0.6%CVE-2026-92791HIGHUber Kraken through 0.1.29 Path Traversal via tag parameterEPSS 0.6%CVE-2018-25325HIGHWoocommerce CSV Importer 3.3.6 Path Traversal File DeletionEPSS 0.6%CVE-2025-62356HIGHA path traversal vulnerability in all versions of the Qodo Qodo Gen IDE enables a threat actor to read arbitrary local files in and outside EPSS 0.6%CVE-2024-52363MEDIUMIBM InfoSphere Information Server directory traversalEPSS 0.6%CVE-2023-40026MEDIUMPath traversal allows leaking out-of-bound Helm charts from Argo CD repo-serverEPSS 0.6%CVE-2024-32778HIGHWordPress Contest Gallery plugin <= 21.3.4 - Arbitrary File Deletion vulnerabilityEPSS 0.6%CVE-2025-8815MEDIUM猫宁i Morning Shiro Configuration index path traversalEPSS 0.6%CVE-2026-42351HIGHpygeoapi: Path Traversal in STAC FileSystemProviderEPSS 0.6%CVE-2026-33329HIGHFileRise: Path Traversal in `resumableIdentifier` Leading to Arbitrary File Write, Recursive Directory Deletion, and Limited Existence OracleEPSS 0.6%CVE-2025-20051CRITICALArbitrary file read via block duplication in Mattermost BoardsEPSS 0.6%