Falhas do tipo CWE-23

424 resultados
CVE-2026-8134CRITICALConcrete CMS 9.5.0 and below is vulnerable to Authenticated RCE via Composer customTemplate Path Traversal leading to PHP File InclusionEPSS 0.7%CVE-2021-38399HIGHHoneywell Experion PKS and ACE Controllers Relative Path TraversalEPSS 0.7%CVE-2021-41127HIGHMaliciously Crafted Model Archive Can Lead To Arbitrary File Write in rasaEPSS 0.7%CVE-2023-4914MEDIUMRelative Path Traversal in cecilapp/cecilEPSS 0.7%CVE-2024-45816MEDIUMStorage bucket Directory Traversal in @backstage/plugin-techdocs-backendEPSS 0.7%CVE-2024-0550CRITICALPrivileged User using traversal to read system filesEPSS 0.7%CVE-2024-33615HIGHCyberPower PowerPanel business Relative Path TraversalEPSS 0.7%CVE-2024-56340MEDIUMIBM Cognos Analytics path traversalEPSS 0.7%CVE-2025-23011HIGHFedora Repository archive extraction path traversalEPSS 0.7%CVE-2024-10200HIGHWellchoose Administrative Management System - Arbitrary File Read through Path TraversalEPSS 0.7%CVE-2026-33435HIGHWeblate: Remote code execution during backup restorationEPSS 0.7%CVE-2024-54154HIGHIn JetBrains YouTrack before 2024.3.51866 system takeover was possible through path traversal in plugin sandboxEPSS 0.7%CVE-2023-37288MEDIUMSmartBPM.NET - Path TraversalEPSS 0.7%CVE-2025-32137MEDIUMWordPress s2Member plugin <= 250419 - Local File Inclusion vulnerabilityEPSS 0.7%CVE-2024-11309HIGHTRCore DVC - Arbitrary File Read through Path TraversalEPSS 0.7%CVE-2024-11310HIGHTRCore DVC - Arbitrary File Read through Path TraversalEPSS 0.7%CVE-2024-22421HIGHPotential authentication and CSRF tokens leak in JupyterLabEPSS 0.7%CVE-2025-8464MEDIUMDrag and Drop Multiple File Upload for Contact Form 7 <= 1.3.9.0 - Directory Traversal via `wpcf7_guest_user_id` CookieEPSS 0.7%CVE-2024-9922HIGHTEAMPLUS TECHNOLOGY Team+ - Arbitrary File Read through Path TraversalEPSS 0.7%CVE-2024-9983HIGHRagic Enterprise Cloud Database - Arbitrary File Read through Path TraversalEPSS 0.7%