CWE-29: Path Traversal: '\..\filename'
The product uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize '\..\filename' (leading backslash dot dot) sequences that can resolve to a location that is outside of that directory.
64 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2024-13059 — Path Traversal in mintplex-labs/anything-llm
- CVE-2024-5443 — Remote Code Execution via Path Traversal in parisneo/lollms
- CVE-2024-4320 — Remote Code Execution due to LFI in '/install_extension' in parisneo/lollms-webui
- CVE-2024-5926 — Path Traversal in stitionai/devika
- CVE-2024-5211 — Path Traversal to Arbitrary File Read/Delete/Overwrite, DoS Attack, and Admin Account Takeover in mintplex-labs/anything-llm
- CVE-2024-12389 — Path Traversal in binary-husky/gpt_academic
- CVE-2026-30828 — Wallos: SSRF via url parameter leading to File Traversal
- CVE-2025-66608 — A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product does not properl
- CVE-2024-10648 — Path Traversal in gradio-app/gradio
- CVE-2025-15036 — Path Traversal Vulnerability in mlflow/mlflow
- CVE-2026-5627 — Path Traversal in mintplex-labs/anything-llm
- CVE-2025-6209 — Arbitrary File Read through Path Traversal in run-llama/llama_index
- CVE-2024-4322 — Path Traversal in parisneo/lollms-webui
- CVE-2024-1561 — Arbitrary Local File Read via Component Method Invocation in gradio-app/gradio
- CVE-2025-12790 — Rubygem-mqtt: rubygem-mqtt hostname validation
- CVE-2026-66152 — A Path traversal vulnerability in OPSWAT tarball in the SonicWall NetExtender Linux client allows an attacker to write a
- CVE-2026-24217 — NVIDIA BioNeMo Core for Linux contains a vulnerability where a user could cause a path traversal by loading a malicious
- CVE-2025-50184 — DbGate allows for File Traversal via file parameter
- CVE-2024-51534 — Dell PowerProtect DD versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain a path traversal vulnerability. A
- CVE-2025-50185 — DbGate allows Unauthorized File Access via CSV Plugin
Recently published
- CVE-2026-66152 — A Path traversal vulnerability in OPSWAT tarball in the SonicWall NetExtender Linux client allows an attacker to write a
- CVE-2026-10732 — All versions of the package decompress are vulnerable to Arbitrary File Write via Archive Extraction (Zip Slip) when ext
- CVE-2026-24217 — NVIDIA BioNeMo Core for Linux contains a vulnerability where a user could cause a path traversal by loading a malicious
- CVE-2026-5627 — Path Traversal in mintplex-labs/anything-llm
- CVE-2025-15036 — Path Traversal Vulnerability in mlflow/mlflow
- CVE-2026-30828 — Wallos: SSRF via url parameter leading to File Traversal
- CVE-2025-66608 — A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product does not properl
- CVE-2025-12790 — Rubygem-mqtt: rubygem-mqtt hostname validation
- CVE-2025-58291 — Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect av
- CVE-2025-50185 — DbGate allows Unauthorized File Access via CSV Plugin
- CVE-2025-50184 — DbGate allows for File Traversal via file parameter
- CVE-2025-6209 — Arbitrary File Read through Path Traversal in run-llama/llama_index
- CVE-2024-10648 — Path Traversal in gradio-app/gradio
- CVE-2024-12389 — Path Traversal in binary-husky/gpt_academic
- CVE-2024-13059 — Path Traversal in mintplex-labs/anything-llm
- CVE-2024-51534 — Dell PowerProtect DD versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain a path traversal vulnerability. A
- CVE-2024-5926 — Path Traversal in stitionai/devika
- CVE-2024-4841 — Path Traversal in parisneo/lollms-webui
- CVE-2024-5443 — Remote Code Execution via Path Traversal in parisneo/lollms
- CVE-2024-5211 — Path Traversal to Arbitrary File Read/Delete/Overwrite, DoS Attack, and Admin Account Takeover in mintplex-labs/anything-llm