CWE-24: Path Traversal: '../filedir'
The product uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize "../" sequences that can resolve to a location that is outside of that directory.
104 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2026-39813 — A path traversal: '../filedir' vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.
- CVE-2025-53513 — Zip slip vulnerability in Juju
- CVE-2024-23657 — Path Traversal: '../filedir' in Nuxt Devtools
- CVE-2025-60344 — A path traversal (directory traversal) vulnerability in D-Link DSR series routers allows unauthenticated remote attacker
- CVE-2026-21857 — Redaxo has Path Traversal in Backup Addon Leading to Arbitrary File Read
- CVE-2026-49103 — Webmin before 2.640 does not safely construct a filename for saving of an attachment within the mailboxes component. Thi
- CVE-2025-59049 — Mockoon has a Path Traversal and LFI in the static file serving endpoint
- CVE-2025-48050 — In DOMPurify through 3.2.5 before 6bc6d60, scripts/server.js does not ensure that a pathname is located under the curren
- CVE-2026-14947 — Frauscher Sensortechnik: FDS102 for FAdC/FAdCi R2 is vulnerable to Remote Code Execution via malicious ZIP file
- CVE-2026-40318 — SiYuan: Publish Reader Path Traversal Delete via `removeUnusedAttributeView`
- CVE-2026-66140 — Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privilege
- CVE-2025-1588 — PHPGurukul Online Nurse Hiring System manage-nurse.php path traversal
- CVE-2025-1086 — Safetytest Cloud-Master Server static path traversal
- CVE-2025-0390 — Guangzhou Huayi Intelligent Technology Jeewms wmOmNoticeHController.do path traversal
- CVE-2026-22810 — Joplin: Path traversal in OneNote importer allows overwriting arbitrary files
- CVE-2026-46687 — Emlog Local File Inclusion (LFI)
- CVE-2025-67845 — A Directory Traversal vulnerability in the Static Asset Proxy Endpoint in Mintlify Platform before 2025-11-15 allows rem
- CVE-2024-53636 — An arbitrary file upload vulnerability via writefile.php of Serosoft Academia Student Information System (SIS) EagleR-1.
- CVE-2026-41082 — In OCaml opam before 2.5.1, a .install field containing a destination filepath can use ../ to reach a parent directory.
- CVE-2026-28538 — Path traversal vulnerability in the certificate management module. Impact: Successful exploitation of this vulnerability
Recently published
- CVE-2026-14947 — Frauscher Sensortechnik: FDS102 for FAdC/FAdCi R2 is vulnerable to Remote Code Execution via malicious ZIP file
- CVE-2026-76353 — Path Traversal through Knowledge Bundle Replication in Splunk Enterprise
- CVE-2026-73573 — In Zimbra Collaboration (ZCS) before 10.1.17, a path traversal vulnerability exists in the Zimbra Briefcase document edi
- CVE-2026-48047 — XWiki Platform vulnerable to potential arbitrary file writing using path traversal from (subwiki) admin
- CVE-2026-66140 — Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privilege
- CVE-2026-46687 — Emlog Local File Inclusion (LFI)
- CVE-2026-44942 — libzypp .repo files can have an optional path which can lead to path traversal attacks
- CVE-2026-49103 — Webmin before 2.640 does not safely construct a filename for saving of an attachment within the mailboxes component. Thi
- CVE-2026-22810 — Joplin: Path traversal in OneNote importer allows overwriting arbitrary files
- CVE-2026-33431 — Roxy-WI Vulnerable to Authenticated Arbitrary File Read via Path Traversal in Config Version Viewer
- CVE-2026-40318 — SiYuan: Publish Reader Path Traversal Delete via `removeUnusedAttributeView`
- CVE-2026-41082 — In OCaml opam before 2.5.1, a .install field containing a destination filepath can use ../ to reach a parent directory.
- CVE-2026-39813 — A path traversal: '../filedir' vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.
- CVE-2026-28538 — Path traversal vulnerability in the certificate management module. Impact: Successful exploitation of this vulnerability
- CVE-2024-43035 — Fonoster 0.5.5 before 0.6.1 allows ../ directory traversal to read arbitrary files via the /sounds/:file or /tts/:file V
- CVE-2026-28427 — OpenDeck affected by path traversal allows arbitrary file read
- CVE-2026-21857 — Redaxo has Path Traversal in Backup Addon Leading to Arbitrary File Read
- CVE-2026-21436 — eopkg has Path Traversal: '../filedir' vulnerability
- CVE-2025-68430 — CVAT vulnerable to directory traversal via mounted share listing
- CVE-2025-67845 — A Directory Traversal vulnerability in the Static Asset Proxy Endpoint in Mintlify Platform before 2025-11-15 allows rem