Falhas do tipo CWE-22

6.020 resultados

Travessia de diretório (Path Traversal)

A aplicação constrói caminhos de arquivo usando entrada do usuário sem validar adequadamente, permitindo que caracteres especiais como '../' façam o caminho "sair" do diretório permitido e acessar arquivos fora da zona restrita. Isso expõe dados sensíveis ou permite manipulação de arquivos críticos do sistema.

Exemplo

Um site permite download de documentos via URL como /download?file=relatorio.pdf, mas não valida o parâmetro. Um atacante usa /download?file=../../etc/passwd para ler o arquivo de senhas do servidor, ou /download?file=../../configuracao.db para acessar a base de dados da aplicação.

Como mitigar

Valide e normalize todos os caminhos de entrada (use funções nativas como realpath ou canonicalize), implemente uma whitelist de arquivos permitidos em vez de bloquear padrões perigosos, e configure permissões de arquivo restritivas no SO. Melhor ainda: nunca construa caminhos a partir de entrada do usuário — use índices ou IDs mapeados internamente.

CVE-2026-92131MEDIUMJenkins Pipeline: Groovy Libraries Plugin 805.va_fc79344957d and earlier does not restrict the library path provided to the library PipelineEPSS 0.2%CVE-2022-40976MEDIUMPILZ: Multiple products affected by ZipSlipEPSS 0.2%CVE-2026-29064HIGHZarf: Symlink targets in archives are not validated against destination directoryEPSS 0.2%CVE-2024-5821MEDIUMLocal File Inclusion (LFI) in stitionai/devikaEPSS 0.2%CVE-2026-7318MEDIUMelie mcp-project research_server.py search_papers path traversalEPSS 0.2%CVE-2026-30290HIGHAn arbitrary file overwrite vulnerability in InTouch Contacts & Caller ID APP v6.38.1 allows attackers to overwrite critical internal files EPSS 0.2%CVE-2021-27798—privileged directory transversal.in Brocade Fabric OS versions 7.4.1.x and 7.3.xEPSS 0.2%CVE-2022-41667HIGHA CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that allows adversaries with lEPSS 0.2%CVE-2026-27115HIGHADB Explorer is Vulnerable to Arbitrary Directory Deletion via Command-Line ArgumentEPSS 0.2%CVE-2026-32146HIGHImproper Path Validation in Git Dependency Handling Allows Arbitrary File System ModificationEPSS 0.2%CVE-2025-3718MEDIUMClient-side path traversal in Guardian/CMC before 25.2.0EPSS 0.2%CVE-2025-3223MEDIUMWorkstationST EGD Configuration Server Path Traversal VulnerabilityEPSS 0.2%CVE-2026-6855HIGHInstructlab: instructlab: path traversal allows arbitrary directory creation and file writeEPSS 0.2%CVE-2026-48105HIGHArc Enterprise cluster FSM applyRegisterFile accepts arbitrary file paths without validation, enabling cluster-wide path-traversal worm primitiveEPSS 0.2%CVE-2024-13894MEDIUMPath traversal in Smartwares camerasEPSS 0.2%CVE-2026-43940HIGHelecterm: Path traversal in electerm runWidget leads to arbitrary code executionEPSS 0.2%CVE-2026-52755HIGHGhidra < 12.0.4 - Path Traversal via Zip Slip in Theme ImportEPSS 0.2%CVE-2026-52752HIGHGhidra < 12.0.2 - Path Traversal in Extension Installer via ZIP Entry NamesEPSS 0.2%CVE-2025-9963CRITICALPath TraversalEPSS 0.2%CVE-2026-57171HIGHTrestle is vulnerable to arbitrary file write via path traversal in author generate commands (Incomplete fix of CVE-2026-46345)EPSS 0.2%