CWE-59: Link Following
The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.
685 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2024-37143 — Dell PowerFlex appliance versions prior to IC 46.381.00 and IC 46.376.00, Dell PowerFlex rack versions prior to RCM 3.8.
- CVE-2024-28189 — Judge0 vulnerable to Sandbox Escape Patch Bypass via chown running on Symbolic Link
- CVE-2024-28185 — Judge0 vulnerable to Sandbox Escape via Symbolic Link
- CVE-2025-11462 — Local Privilege Escalation Vulnerability in AWS Client VPN macOS Client
- CVE-2025-66277 — QTS, QuTS hero
- CVE-2026-11940 — tarfile extraction filter bypass allows escaping the destination directory
- CVE-2026-31979 — himmelblaud-tasks: local privilege escalation via /tmp symlink attack on Kerberos ccache
- CVE-2025-7073 — Local Privilege Escalation via Arbitrary File Operation in Bitdefender Total Security
- CVE-2025-41668 — Phoenix Contact: File access due to the replacement of a critical file used by the service security-profile
- CVE-2025-41667 — Phoenix Contact: File access due to the replacement of a critical file used by the arp-preinit script
- CVE-2025-41666 — Phoenix Contact: File access due to the replacement of a critical file used by the watchdog
- CVE-2024-27458 — HP Hotkey Support – Escalation of Privilege
- CVE-2024-12390 — Remote Code Execution in binary-husky/gpt_academic
- CVE-2024-10986 — Local File Read (LFI) by Tarslip Symlink via arxiv_download() API in binary-husky/gpt_academic
- CVE-2024-53691 — QTS, QuTS hero
- CVE-2024-48862 — QuLog Center
- CVE-2024-10007 — Pre-Receive Hook Path Collision Vulnerability in GitHub Enterprise Server Allowing Privilege Escalation
- CVE-2026-27905 — BentoML has an Arbitrary File Write via Symlink Path Traversal in Tar Extraction
- CVE-2025-7012 — Cato Networks Linux Client Local Privilege Escalation via Symlink
- CVE-2024-1753 — Buildah: full container escape at build time
Recently published
- CVE-2026-87766 — Bubblewrap: bubblewrap: symlink traversal via /oldroot allows writing files outside sandbox during setup
- CVE-2026-78622 — Improper Link Resolution in Okta Verify for Windows Uninstaller Data Removal
- CVE-2026-86469 — Glib2: toctou symlink race in `g_file_create_replace_destination` fallback path
- CVE-2026-86424 — ImageMagick before 7.1.2-30 Path Traversal via TOCTOU Symlink Race
- CVE-2026-86422 — ImageMagick before 7.1.2-30 Path Policy TOCTOU Symlink Race
- CVE-2026-85583 — SiYuan before v3.8.2 Path Traversal via symlink in file API
- CVE-2026-85092 — LiME through 1.12.0 Arbitrary File Overwrite via Symlink Following
- CVE-2026-78409 — Util-linux: util-linux: x-mount.subdir detached-tree resolution can escape via intermediate symlinks
- CVE-2024-14047 — Improper Link Resolution Before File Access ('Link Following') in Winlogbeat Leading to Arbitrary File Write and Denial of Service
- CVE-2026-82455 — RubyGems before 4.0.13 Path Traversal via Symlink Resolution
- CVE-2026-55569 — aqua: Archive extraction in aqua follows attacker-planted symlinks, allowing writes outside the install directory
- CVE-2026-55108 — KubeVela Terraform remote loader DoS via unbounded file read
- CVE-2026-82252 — gitoxide before 0.52.1 Repository Boundary Violation via symlinked .gitmodules
- CVE-2026-82248 — gitoxide before 0.33.0 Path Traversal via symlink following
- CVE-2026-81727 — NLTK before 3.10.3 Hardlink File Overwrite via downloader
- CVE-2026-81690 — verify-usb before 1.4.9 Symlink Directory Traversal Code Execution
- CVE-2026-56651 — Arbitrary File Overwrite via Symlink Following in dool project
- CVE-2026-81572 — Local Privilege Escalation in CodeMeter Runtime on Windows
- CVE-2026-65647 — Improper symlink resolution before file access in Plesk allows remote authenticated users to execute arbitrary code as r
- CVE-2026-61792 — Weblate path traversal allows a project administrator to read arbitrary files via App store metadata download (Incomplete Fix of CVE-2026-34242)