Fallos del tipo CWE-22

5970 resultados

Travessia de diretório (path traversal)

A aplicação constrói caminhos de arquivo a partir de entrada do usuário sem validar adequadamente sequências como '../' ou símbolos absolutos, permitindo que um atacante acesse arquivos fora do diretório permitido. Isso expõe dados sensíveis ou permite execução não autorizada de operações no sistema de arquivos.

Ejemplo

Um sistema web que serve documentos de um diretório específico recebe a requisição 'GET /doc?file=../../etc/passwd'. Se não validar a entrada, o código resolve o caminho para fora do diretório restrito e vaza o arquivo de senhas do sistema.

Cómo mitigar

Valide caminhos usando listas brancas de nomes de arquivo permitidos, normalize caminhos (remover '../' e símbolos), use APIs que isolem automaticamente operações em diretório base (ex: chroot, sandbox), e evite concatenar entrada direta em construtores de caminhos. Teste com payloads comuns de path traversal em testes de segurança.

CVE-2026-65878HIGHJoomla Extension - joomshaper.com - Authenticated arbitrary file delete in SP Page Builder < 6.7.1EPSS 0.5%CVE-2023-2621MEDIUM The McFeeder server (distributed as part of SSW package), is susceptible to an arbitrary file write vulnerability on the MAIN computer systEPSS 0.5%CVE-2026-42598MEDIUMPode: Directory Traversal is possible on Static RoutesEPSS 0.5%CVE-2026-19302MEDIUMLangflow is vulnerable to arbitrary local file read due to path traversal in ChatInput, bundle FileInput, and GitExtractor componentsEPSS 0.5%CVE-2023-39407—The Watchkit has a risk of unauthorized file access.Successful exploitation of this vulnerability may affect confidentiality and integrity.EPSS 0.5%CVE-2026-66397HIGHphpMyFAQ before 4.1.6 Path Traversal via category image deletionEPSS 0.5%CVE-2026-64967MEDIUMPath Traversal in ATutorEPSS 0.5%CVE-2026-41911MEDIUMOpenClaw < 2026.4.8 - Workspace-Only Filesystem Policy Bypass via docx upload_file/upload_imageEPSS 0.5%CVE-2025-12422CRITICALVulnerable Upgrade Feature (Arbitrary File Write)EPSS 0.5%CVE-2026-1812MEDIUMbolo-blog bolo-solo Filename BackupService.java importFromCnblogs path traversalEPSS 0.5%CVE-2026-3188MEDIUMfeiyuchuixue sz-boot-parent API templates path traversalEPSS 0.5%CVE-2025-64433MEDIUMKubeVirt Arbitrary Container File ReadEPSS 0.5%CVE-2022-4884LOWPath-Traversal in MKP storingEPSS 0.5%CVE-2022-42282MEDIUMNVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can access arbitrary files, which may lead to information EPSS 0.5%CVE-2026-23633MEDIUMGogs has arbitrary file read/write via path traversal in Git hook editingEPSS 0.5%CVE-2024-9100MEDIUMLocal File InclusionEPSS 0.5%CVE-2026-19729MEDIUMKeycloak-services: keycloak-services: incomplete fix for arbitrary filesystem path probing via keystore parametersEPSS 0.5%CVE-2026-55527HIGHPraisonAI: Arbitrary file write via unsanitized `user_id` in `FileMemory.__init__()` — path traversal to any writable locationEPSS 0.5%CVE-2026-32007HIGHOpenClaw < 2026.2.23 - Sandbox Bypass in apply_patch Tool via Workspace-Only Check BypassEPSS 0.5%CVE-2024-43281MEDIUMWordPress Void Elementor Post Grid Addon for Elementor Page builder plugin <= 2.3 - Local File Inclusion vulnerabilityEPSS 0.5%