https://www.broadcom.com/support/security-center/protection-bulletin/path-traversal-vulnerability-in-nexus-repository-cve-2024-4956
Path Traversal Vulnerability in Nexus Repository CVE-2024-4956
Path Traversal Vulnerability in Nexus Repository CVE-2024-4956
path traversalnexus repositoryvulnerabilitycve
https://advisories.gitlab.com/golang/github.com/containers/podman/v4/CVE-2022-4123/
Relative Path Traversal | GitLab Advisory Database (GLAD)
CVE-2022-4123 Relative Path Traversal: A flaw was found in Buildah. The local path and the lowest subdirectory may be disclosed due to incorrect absolute path...
relative pathtraversalgitlabadvisorydatabase
https://advisories.gitlab.com/pypi/mlflow/CVE-2024-1593/
mlflow vulnerable to Path Traversal | GitLab Advisory Database (GLAD)
CVE-2024-1593 mlflow vulnerable to Path Traversal: A path traversal vulnerability exists in the mlflow/mlflow repository due to improper handling of URL...
path traversalmlflowvulnerablegitlabadvisory
https://advisories.gitlab.com/gem/mpxj/CVE-2024-49771/
MPXJ has a Potential Path Traversal Vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-49771 MPXJ has a Potential Path Traversal Vulnerability: The patch for the historical vulnerability CVE-2020-35460 in MPXJ is incomplete as there is...
path traversalpotential
https://advisories.gitlab.com/composer/shopware/core/GHSA-6wh5-mw9h-5c3w/
Shopware vulnerable to path traversal via Plugin upload | GitLab Advisory Database (GLAD)
GHSA-6wh5-mw9h-5c3w Shopware vulnerable to path traversal via Plugin upload: A path traversal vulnerability allows malicious actors to access files and folders...
path traversal
https://advisories.gitlab.com/pypi/pymupdf/CVE-2026-3029/
PyMuPDF has a path traversal in _main_.py | GitLab Advisory Database (GLAD)
CVE-2026-3029 PyMuPDF has a path traversal in _main_.py: A path traversal and arbitrary file write vulnerability exist in the embedded get function in...
path traversal
https://developer.android.com/privacy-and-security/risks/path-traversal?authuser=1
Path traversal | Security | Android Developers
path traversalsecurityandroiddevelopers
https://advisories.gitlab.com/pypi/agixt/GHSA-5gfj-64gh-mgmw/
AGiXT Vulnerable to Path Traversal in safe_join() | GitLab Advisory Database (GLAD)
GHSA-5gfj-64gh-mgmw AGiXT Vulnerable to Path Traversal in safe_join(): The safe_join() function in the essential_abilities extension fails to validate that...
path traversal
https://advisories.gitlab.com/maven/org.apache.zeppelin/zeppelin-server/CVE-2024-31860/
Apache Zeppelin Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-31860 Apache Zeppelin Path Traversal vulnerability: Improper Input Validation vulnerability in Apache Zeppelin. By adding relative path indicators...
apache zeppelinpath traversalvulnerabilitygitlabadvisory
https://advisories.gitlab.com/composer/shopware/platform/GHSA-6wh5-mw9h-5c3w/
Shopware vulnerable to path traversal via Plugin upload | GitLab Advisory Database (GLAD)
GHSA-6wh5-mw9h-5c3w Shopware vulnerable to path traversal via Plugin upload: A path traversal vulnerability allows malicious actors to access files and folders...
path traversal
https://advisories.gitlab.com/pypi/mlflow/CVE-2023-6909/
MLflow Path Traversal Vulnerability | GitLab Advisory Database (GLAD)
CVE-2023-6909 MLflow Path Traversal Vulnerability: Path Traversal: '..\filename' in GitHub repository mlflow/mlflow prior to 2.9.2.
path traversalmlflowvulnerabilitygitlabadvisory
https://advisories.gitlab.com/swift/github.com/marmelroy/zip/CVE-2023-39135/
Path traversal in Zip Swift | GitLab Advisory Database (GLAD)
CVE-2023-39135 Path traversal in Zip Swift: An issue in Zip Swift v2.1.2 allows attackers to execute a path traversal attack via a crafted zip entry.
path traversalzipswiftgitlabadvisory
https://advisories.gitlab.com/composer/phpmyfaq/phpmyfaq/GHSA-gh9p-q46p-57g2/
phpMyFAQ: Path Traversal in Client::deleteClientFolder enables arbitrary directory deletion by...
GHSA-gh9p-q46p-57g2 phpMyFAQ: Path Traversal in Client::deleteClientFolder enables arbitrary directory deletion by non-super-admin admins:...
path traversalphpmyfaqclient
https://advisories.gitlab.com/npm/@janhq/core/CVE-2024-36858/
Jan path traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-36858 Jan path traversal vulnerability: An arbitrary file upload vulnerability in the /v1/app/writeFileSync interface of Jan v0.4.12 allows attackers...
path traversaljanvulnerabilitygitlabadvisory
https://advisories.gitlab.com/maven/org.jenkins-ci.plugins/matrix-project/CVE-2024-23900/
Path traversal vulnerability in Jenkins Matrix Project Plugin | GitLab Advisory Database (GLAD)
CVE-2024-23900 Path traversal vulnerability in Jenkins Matrix Project Plugin: Jenkins Matrix Project Plugin 822.v01b_8c85d16d2 and earlier does not sanitize...
path traversalmatrix project
https://advisories.gitlab.com/golang/gogs.io/gogs/CVE-2024-55947/
Path Traversal in file update API in gogs | GitLab Advisory Database (GLAD)
CVE-2024-55947 Path Traversal in file update API in gogs: The malicious user is able to write a file to an arbitrary path on the server to gain SSH access to...
path traversalfileupdate
https://advisories.gitlab.com/pypi/apache-airflow/CVE-2023-22887/
Apache Airflow Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2023-22887 Apache Airflow Path Traversal vulnerability: Apache Airflow, versions before 2.6.3, is affected by a vulnerability that allows an attacker to...
apache airflowpath traversalvulnerabilitygitlabadvisory
https://advisories.gitlab.com/maven/lsfusion.platform/web-client/CVE-2025-13261/
lsFusion Platform has a Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2025-13261 lsFusion Platform has a Path Traversal vulnerability: A vulnerability was found in lsfusion platform up to 6.1. Affected is the function...
path traversallsfusionplatform
https://advisories.gitlab.com/composer/magento/community-edition/CVE-2021-36031/
Magento Path Traversal vulnerability via the `theme[preview_image]` parameter | GitLab Advisory...
CVE-2021-36031 Magento Path Traversal vulnerability via the `theme[preview_image]` parameter: Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and...
path traversalthe theme
https://advisories.gitlab.com/pypi/binwalk/CVE-2022-4510/
Path traversal in binwalk | GitLab Advisory Database (GLAD)
CVE-2022-4510 Path traversal in binwalk: A path traversal vulnerability was identified in ReFirm Labs binwalk from version 2.1.2b through 2.3.3 inclusive. By...
path traversalbinwalkgitlabadvisorydatabase
https://advisories.gitlab.com/pypi/lollms/CVE-2024-3429/
LoLLMS Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-3429 LoLLMS Path Traversal vulnerability: A path traversal vulnerability exists in the parisneo/lollms application, specifically within the...
path traversalvulnerabilitygitlabadvisorydatabase
https://cert.europa.eu/publications/security-advisories/2023-044/
CERT-EU - Path Traversal Vulnerability in Mastodon Media File Handler
CERT-EU - Path Traversal Vulnerability in Mastodon Media File Handler
path traversalmedia filecerteuvulnerability
https://advisories.gitlab.com/golang/github.com/whyrusleeping/tar-utils/CVE-2020-36566/
tar-utils Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2020-36566 tar-utils Path Traversal vulnerability: Due to improper path santization, archives containing relative file paths can cause files to be written...
path traversaltarutilsvulnerabilitygitlab
https://advisories.gitlab.com/npm/@janhq/core/CVE-2024-37273/
Jan path traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-37273 Jan path traversal vulnerability: An arbitrary file upload vulnerability in the /v1/app/appendFileSync interface of Jan v0.4.12 allows attackers...
path traversaljanvulnerabilitygitlabadvisory
https://advisories.gitlab.com/npm/jspdf/CVE-2025-68428/
jsPDF has Local File Inclusion/Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2025-68428 jsPDF has Local File Inclusion/Path Traversal vulnerability: User control of the first argument of the loadFile method in the node.js build...
local file inclusionpath traversal
https://advisories.gitlab.com/golang/github.com/mattermost/mattermost-server/v5/CVE-2025-8023/
Mattermost Fails to Sanitize Path Traversal Sequences | GitLab Advisory Database (GLAD)
path traversalmattermostfailssanitize
https://advisories.gitlab.com/golang/github.com/arduino/arduino-create-agent/CVE-2023-43802/
Arduino Create Agent path traversal - local privilege escalation vulnerability | GitLab Advisory...
CVE-2023-43802 Arduino Create Agent path traversal - local privilege escalation vulnerability: Arduino Create Agent is a package to help manage Arduino...
arduino createpath traversalprivilege escalationagent
https://advisories.gitlab.com/maven/aendter.jenkins.plugins/filesystem-list-parameter-plugin/CVE-2024-54004/
Jenkins Filesystem List Parameter Plugin has Path Traversal vulnerability | GitLab Advisory...
CVE-2024-54004 Jenkins Filesystem List Parameter Plugin has Path Traversal vulnerability: Jenkins Filesystem List Parameter Plugin 0.0.14 and earlier does not...
path traversaljenkinsfilesystemlistparameter
https://advisories.gitlab.com/maven/org.apache.pdfbox/pdfbox-examples/CVE-2026-23907/
Apache PDFBox has Path Traversal through PDComplexFileSpecification.getFilename() function | GitLab...
CVE-2026-23907 Apache PDFBox has Path Traversal through PDComplexFileSpecification.getFilename() function: This issue affects the ExtractEmbeddedFiles example...
apache pdfboxpath traversalgetfilenamefunctiongitlab
https://advisories.gitlab.com/pypi/bentoml/CVE-2026-24123/
BentoML has a Path Traversal via Bentofile Configuration | GitLab Advisory Database (GLAD)
CVE-2026-24123 BentoML has a Path Traversal via Bentofile Configuration: BentoML's bentofile.yaml configuration allows path traversal attacks through multiple...
path traversal
https://advisories.gitlab.com/pypi/keras/CVE-2024-55459/
keras Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-55459 keras Path Traversal vulnerability: An issue in keras 3.7.0 allows attackers to write arbitrary files to the user's machine via downloading a...
path traversalkerasvulnerabilitygitlabadvisory
https://advisories.gitlab.com/maven/io.jenkins.plugins/visualexpert/CVE-2023-24455/
Path Traversal in Jenkins visualexpert Plugin | GitLab Advisory Database (GLAD)
CVE-2023-24455 Path Traversal in Jenkins visualexpert Plugin: Jenkins visualexpert Plugin 1.3 and earlier does not restrict the names of files in methods...
path traversaljenkinsplugingitlabadvisory
https://advisories.gitlab.com/pypi/bugsink/CVE-2025-54433/
Bugsink path traversal via event_id in ingestion | GitLab Advisory Database (GLAD)
CVE-2025-54433 Bugsink path traversal via event_id in ingestion: In affected versions, ingestion paths construct file locations directly from untrusted...
path traversalevent id
https://advisories.gitlab.com/npm/@nuxt/devtools/CVE-2024-23657/
Nuxt Devtools has a Path Traversal: '../filedir' | GitLab Advisory Database (GLAD)
CVE-2024-23657 Nuxt Devtools has a Path Traversal: '../filedir': Nuxt Devtools is missing authentication on the getTextAssetContent RPC function which is...
path traversalnuxtdevtools
https://advisories.gitlab.com/pypi/pytorch-lightning/CVE-2024-8019/
PyTorch Lightning path traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-8019 PyTorch Lightning path traversal vulnerability: In lightning-ai/pytorch-lightning version 2.3.2, a vulnerability exists in the LightningApp when...
pytorch lightningpath traversalvulnerabilitygitlabadvisory
https://advisories.gitlab.com/golang/gogs.io/gogs/GMS-2022-1993/
Path Traversal in file editor on Windows in Gogs | GitLab Advisory Database (GLAD)
GMS-2022-1993 Path Traversal in file editor on Windows in Gogs: Impact The malicious user is able to delete and upload arbitrary file(s). All installations on...
path traversalfile editor
https://advisories.gitlab.com/cargo/qdrant/CVE-2024-3584/
qdrant is vulnerable to path traversal due to improper input validation in the...
path traversal
https://advisories.gitlab.com/maven/io.gravitee.apim/gravitee-api-management/CVE-2022-38723/
Relative Path Traversal | GitLab Advisory Database (GLAD)
CVE-2022-38723 Relative Path Traversal: Gravitee API Management before 3.15.13 allows path traversal through HTML injection.
relative pathtraversalgitlabadvisorydatabase
https://advisories.gitlab.com/maven/org.keycloak/keycloak-services/CVE-2024-2419/
Keycloak path traversal vulnerability in the redirect validation | GitLab Advisory Database (GLAD)
CVE-2024-2419 Keycloak path traversal vulnerability in the redirect validation: An issue was found in the redirect_uri validation logic that allows for a...
path traversalin the
https://advisories.gitlab.com/composer/twig/twig/GHSA-7cvr-xhm5-x998/
Twig Path Traversal vulnerability in the filesystem loader | GitLab Advisory Database (GLAD)
GHSA-7cvr-xhm5-x998 Twig Path Traversal vulnerability in the filesystem loader: Twig is affected by path traversal vulnerability when used with...
path traversalin the
https://advisories.gitlab.com/maven/org.apache.tomcat/tomcat-catalina/CVE-2025-55752/
Apache Tomcat Vulnerable to Relative Path Traversal | GitLab Advisory Database (GLAD)
CVE-2025-55752 Apache Tomcat Vulnerable to Relative Path Traversal: The fix for bug 60013 introduced a regression where the rewritten URL was normalized before...
apache tomcatrelative pathvulnerable
https://advisories.gitlab.com/maven/com.liferay/com.liferay.server.admin.web/CVE-2025-3594/
Liferay Portal path traversal vulnerability with the downloading and installation of Xuggler |...
CVE-2025-3594 Liferay Portal path traversal vulnerability with the downloading and installation of Xuggler: Path traversal vulnerability with the downloading...
liferay portalpath traversal
https://advisories.gitlab.com/composer/magento/project-community-edition/CVE-2021-36031/
Magento Path Traversal vulnerability via the `theme[preview_image]` parameter | GitLab Advisory...
CVE-2021-36031 Magento Path Traversal vulnerability via the `theme[preview_image]` parameter: Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and...
path traversalthe theme
https://advisories.gitlab.com/pypi/wlc/CVE-2026-23535/
Weblate wlc path traversal vulnerability: Unsanitized API slugs in download command | GitLab...
CVE-2026-23535 Weblate wlc path traversal vulnerability: Unsanitized API slugs in download command : Multi-translation download could write to an arbitrary...
path traversal
https://advisories.gitlab.com/pypi/pretalx/CVE-2023-28459/
pretalx vulnerable to path traversal in HTML export | GitLab Advisory Database (GLAD)
CVE-2023-28459 pretalx vulnerable to path traversal in HTML export: pretalx before 2.3.2 allows path traversal in HTML export (a non-default feature). Users...
path traversal
https://advisories.gitlab.com/pypi/zenml/CVE-2025-8406/
ZenML is vulnerable to Path Traversal through its `PathMaterializer` class | GitLab Advisory...
CVE-2025-8406 ZenML is vulnerable to Path Traversal through its `PathMaterializer` class: ZenML version 0.83.1 is affected by a path traversal vulnerability in...
path traversal
https://advisories.gitlab.com/npm/@janhq/core/CVE-2024-36857/
Jan path traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-36857 Jan path traversal vulnerability: Jan v0.4.12 was discovered to contain an arbitrary file read vulnerability via the /v1/app/readFileSync...
path traversaljanvulnerabilitygitlabadvisory
https://advisories.gitlab.com/maven/org.jenkins-ci.plugins/report-info/CVE-2024-5273/
Jenkins Report Info Plugin Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-5273 Jenkins Report Info Plugin Path Traversal vulnerability: Jenkins Report Info Plugin 1.2 and earlier does not perform path validation of the...
report infopath traversaljenkinsplugin
https://advisories.gitlab.com/pypi/lollms/CVE-2024-6085/
lollms vulnerable to path traversal due to unauthenticated root folder settings change | GitLab...
CVE-2024-6085 lollms vulnerable to path traversal due to unauthenticated root folder settings change: A path traversal vulnerability exists in the XTTS server...
path traversal
https://advisories.gitlab.com/maven/org.fitnesse/fitnesse/CVE-2024-42499/
FitNesse Path Traversal | GitLab Advisory Database (GLAD)
CVE-2024-42499 FitNesse Path Traversal: Improper limitation of a pathname to a restricted directory ('Path Traversal') issue exists in FitNesse releases prior...
path traversalfitnessegitlabadvisorydatabase
https://advisories.gitlab.com/npm/openclaw/GHSA-qrq5-wjgg-rvqw/
OpenClaw has a Path Traversal in Plugin Installation | GitLab Advisory Database (GLAD)
GHSA-qrq5-wjgg-rvqw OpenClaw has a Path Traversal in Plugin Installation: OpenClaw's plugin installation path derivation could be abused by a malicious plugin...
path traversal
https://advisories.gitlab.com/maven/net.sf.mpxj/mpxj/CVE-2024-49771/
MPXJ has a Potential Path Traversal Vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-49771 MPXJ has a Potential Path Traversal Vulnerability: The patch for the historical vulnerability CVE-2020-35460 in MPXJ is incomplete as there is...
path traversalpotential
https://advisories.gitlab.com/pypi/nltk/CVE-2026-0847/
NLTK has a Path Traversal issue | GitLab Advisory Database (GLAD)
CVE-2026-0847 NLTK has a Path Traversal issue: A vulnerability in NLTK versions up to and including 3.9.2 allows arbitrary file read via path traversal in...
path traversalnltkissuegitlabadvisory
https://advisories.gitlab.com/golang/github.com/mholt/archiver/v3/CVE-2024-0406/
Archiver Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-0406 Archiver Path Traversal vulnerability: A flaw was discovered in the mholt/archiver package. This flaw allows an attacker to create a specially...
path traversalarchivervulnerabilitygitlabadvisory
https://advisories.gitlab.com/npm/vite-plus/GHSA-33r3-4whc-44c2/
Path traversal in vite-plus/binding downloadPackageManager() writes outside VP_HOME | GitLab...
GHSA-33r3-4whc-44c2 Path traversal in vite-plus/binding downloadPackageManager() writes outside VP_HOME: downloadPackageManager() in vite-plus/binding accepts...
path traversal
https://dev.to/cverports/ghsa-9cp7-j3f8-p5jx-ghsa-9cp7-j3f8-p5jx-unauthenticated-path-traversal-and-zip-slip-in-daptin-7jo
GHSA-9CP7-J3F8-P5JX: GHSA-9CP7-J3F8-P5JX: Unauthenticated Path Traversal and Zip Slip in Daptin -...
GHSA-9CP7-J3F8-P5JX: Unauthenticated Path Traversal and Zip Slip in Daptin Vulnerability... Tagged with security, cve, cybersecurity, ghsa.
path traversal
https://advisories.gitlab.com/gem/measured/GHSA-29g5-m8v7-v564/
Measured is vulnerable to Path Traversal attacks during class initialization | GitLab Advisory...
GHSA-29g5-m8v7-v564 Measured is vulnerable to Path Traversal attacks during class initialization: A path traversal vulnerability exists where an attacker with...
path traversal
https://advisories.gitlab.com/composer/magento/project-community-edition/CVE-2021-28584/
Magento Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2021-28584 Magento Path Traversal vulnerability: Magento versions 2.4.2 (and earlier), 2.4.1-p1 (and earlier) and 2.3.6-p1 (and earlier) are affected by a...
path traversalmagentovulnerabilitygitlabadvisory
https://advisories.gitlab.com/golang/code.cloudfoundry.org/archiver/CVE-2018-25046/
Cloud Foundry Archiver vulnerable to path traversal | GitLab Advisory Database (GLAD)
CVE-2018-25046 Cloud Foundry Archiver vulnerable to path traversal: Due to improper path santization, archives containing relative file paths can cause files...
cloud foundrypath traversalarchivervulnerable
https://advisories.gitlab.com/npm/h3/GHSA-72gr-qfp7-vwhw/
h3: Double Decoding in `serveStatic` Bypasses `resolveDotSegments` Path Traversal Protection via...
GHSA-72gr-qfp7-vwhw h3: Double Decoding in `serveStatic` Bypasses `resolveDotSegments` Path Traversal Protection via `%252e%252e`: The serveStatic utility in...
path traversaldoubledecoding
https://advisories.gitlab.com/pypi/changedetection.io/CVE-2024-51998/
changedetection.io path traversal using file URI scheme without supplying hostname | GitLab...
CVE-2024-51998 changedetection.io path traversal using file URI scheme without supplying hostname: The validation for the file URI scheme falls short, and...
path traversal
https://advisories.gitlab.com/pypi/mlflow/CVE-2023-2780/
mlflow Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2023-2780 mlflow Path Traversal vulnerability: mlflow prior to 2.3.0 is vulnerable to path traversal due to a bypass of the fix for CVE-2023-1177.
path traversalmlflowvulnerabilitygitlabadvisory
https://advisories.gitlab.com/maven/io.digdag/digdag-server/CVE-2024-25125/
Absolute path traversal vulnerability in digdag server | GitLab Advisory Database (GLAD)
CVE-2024-25125 Absolute path traversal vulnerability in digdag server: Treasure Data's digdag workload automation system is susceptible to a path traversal...
path traversalabsolutevulnerability
https://advisories.gitlab.com/pypi/mobsf/CVE-2025-58161/
MobSF Path Traversal in GET /download/filename using absolute filenames | GitLab Advisory...
path traversalget download
https://advisories.gitlab.com/npm/sillytavern/CVE-2026-34524/
SillyTavern: Path Traversal in `/api/chats/export` and `/api/chats/delete` allows arbitrary file...
CVE-2026-34524 SillyTavern: Path Traversal in `/api/chats/export` and `/api/chats/delete` allows arbitrary file read/delete within user data root: A Path...
path traversal
https://knowledge.broadcom.com/external/article/432794/cve202438816-path-traversal-vulnerabilit.html
CVE-2024-38816 Path traversal vulnerability in functional web frameworks
path traversalcvevulnerabilityfunctionalweb
https://advisories.gitlab.com/pypi/lollms/CVE-2024-4881/
LoLLMS Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-4881 LoLLMS Path Traversal vulnerability: A path traversal vulnerability exists in the parisneo/lollms application, affecting version 9.4.0 and...
path traversalvulnerabilitygitlabadvisorydatabase
https://advisories.gitlab.com/pypi/mlflow/CVE-2024-1594/
mlflow vulnerable to Path Traversal | GitLab Advisory Database (GLAD)
CVE-2024-1594 mlflow vulnerable to Path Traversal: A path traversal vulnerability exists in the mlflow/mlflow repository, specifically within the handling of...
path traversalmlflowvulnerablegitlabadvisory
https://advisories.gitlab.com/maven/commons-io/commons-io/CVE-2021-29425/
Path Traversal | GitLab Advisory Database (GLAD)
CVE-2021-29425 Path Traversal: In Apache Commons IO, When invoking the method FileNameUtils.normalize with an improper input string, the result would be the...
path traversalgitlabadvisorydatabaseglad
https://advisories.gitlab.com/npm/mapshaper/CVE-2024-1163/
mapshaper Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-1163 mapshaper Path Traversal vulnerability: Path Traversal in GitHub repository mbloch/mapshaper prior to 0.6.44.
path traversalvulnerabilitygitlabadvisorydatabase
https://advisories.gitlab.com/golang/gogs.io/gogs/GMS-2022-1992/
Path Traversal in Git HTTP endpoints in Gogs | GitLab Advisory Database (GLAD)
GMS-2022-1992 Path Traversal in Git HTTP endpoints in Gogs: Impact The malicious user is able to craft HTTP requests to access unauthorized Git directories....
path traversalhttp endpointsgit
https://aws.amazon.com/it/security/security-bulletins/AWS-2025-003/
Problema di path traversal nella Deep Java Library - (CVE-2025-0851)
path traversaljava libraryproblemadinella
https://advisories.gitlab.com/composer/magento/community-edition/CVE-2025-24406/
Adobe Commerce Path Traversal | GitLab Advisory Database (GLAD)
CVE-2025-24406 Adobe Commerce Path Traversal: Adobe Commerce versions 2.4.8-beta1, 2.4.7-p3, 2.4.6-p8, 2.4.5-p10, 2.4.4-p11 and earlier are affected by an...
adobe commercepath traversalgitlabadvisorydatabase
https://advisories.gitlab.com/composer/magento/community-edition/CVE-2024-39406/
Magento Open Source Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-39406 Magento Open Source Path Traversal vulnerability: Magento Open Source versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected...
magento open sourcepath traversalvulnerabilitygitlabadvisory
https://advisories.gitlab.com/pypi/dbgpt/CVE-2024-10831/
DB-GPT Absolute Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-10831 DB-GPT Absolute Path Traversal vulnerability: In eosphoros-ai/db-gpt version 0.6.0, the endpoint for uploading files is vulnerable to absolute...
path traversaldbgptabsolutevulnerability
https://advisories.gitlab.com/golang/github.com/bishopfox/sliver/CVE-2026-25760/
Sliver Vulnerable to Website Path Traversal / Arbitrary File Read (Authenticated) | GitLab Advisory...
CVE-2026-25760 Sliver Vulnerable to Website Path Traversal / Arbitrary File Read (Authenticated): A Path Traversal vulnerability in the website content...
to websitepath traversal
https://advisories.gitlab.com/golang/github.com/hashicorp/consul/CVE-2024-10005/
Hashicorp Consul Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-10005 Hashicorp Consul Path Traversal vulnerability: A vulnerability was identified in Consul and Consul Enterprise ("Consul") such that using URL...
hashicorp consulpath traversalvulnerabilitygitlabadvisory
https://advisories.gitlab.com/maven/org.apache.streampark/streampark-common_2.11/CVE-2022-45802/
Apache StreamPark Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2022-45802 Apache StreamPark Path Traversal vulnerability: Streampark allows any users to upload a jar as application, but there is no mandatory...
path traversalapachevulnerabilitygitlabadvisory
https://advisories.gitlab.com/maven/com.gitblit/gitblit/CVE-2022-31268/
Relative Path Traversal | GitLab Advisory Database (GLAD)
CVE-2022-31268 Relative Path Traversal: A Path Traversal vulnerability in Gitblit 1.9.3 can lead to reading website files via /resources//../ (e.g., followed...
relative pathtraversalgitlabadvisorydatabase
https://advisories.gitlab.com/golang/github.com/ory/oathkeeper/CVE-2026-33494/
Ory Oathkeeper has a path traversal authorization bypass | GitLab Advisory Database (GLAD)
CVE-2026-33494 Ory Oathkeeper has a path traversal authorization bypass: Ory Oathkeeper is vulnerable to an authorization bypass via HTTP path traversal. An...
path traversal
https://advisories.gitlab.com/composer/typo3/cms/GHSA-gj48-w74w-8gvm/
Path Traversal in TYPO3 Core | GitLab Advisory Database (GLAD)
GHSA-gj48-w74w-8gvm Path Traversal in TYPO3 Core: Due to a too loose type check in an API method, attackers could bypass the directory traversal check by...
path traversalcoregitlabadvisorydatabase
https://advisories.gitlab.com/nuget/net.sf.mpxj/CVE-2024-49771/
MPXJ has a Potential Path Traversal Vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-49771 MPXJ has a Potential Path Traversal Vulnerability: The patch for the historical vulnerability CVE-2020-35460 in MPXJ is incomplete as there is...
path traversalpotential
https://advisories.gitlab.com/pypi/mlflow/CVE-2023-6977/
Path Traversal: '\..\filename' | GitLab Advisory Database (GLAD)
CVE-2023-6977 Path Traversal: '\..\filename': This vulnerability enables malicious users to read sensitive files on the server.
path traversalfilenamegitlabadvisorydatabase
https://advisories.gitlab.com/golang/github.com/gphper/ginadmin/CVE-2022-30427/
Path traversal in ginadmin | GitLab Advisory Database (GLAD)
CVE-2022-30427 Path traversal in ginadmin: In ginadmin through 05-10-2022 the incoming path value is not filtered, resulting in directory traversal.
path traversalgitlabadvisorydatabaseglad
https://advisories.gitlab.com/pypi/libre-chat/CVE-2024-52787/
libre-chat Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-52787 libre-chat Path Traversal vulnerability: An issue in the upload_documents method of libre-chat v0.0.6 allows attackers to execute a path...
path traversallibrechatvulnerabilitygitlab
https://advisories.gitlab.com/golang/code.vikunja.io/api/CVE-2026-27819/
Vikunja has Path Traversal in CLI Restore | GitLab Advisory Database (GLAD)
CVE-2026-27819 Vikunja has Path Traversal in CLI Restore: Path Traversal (Zip Slip) and Denial of Service (DoS) vulnerability discovered in the Vikunja CLI's...
path traversalvikunja
https://dev.to/cverports/ghsa-xjvp-7243-rg9h-ghsa-xjvp-7243-rg9h-critical-path-traversal-in-wish-scp-middleware-allows-300g
GHSA-XJVP-7243-RG9H: GHSA-xjvp-7243-rg9h: Critical Path Traversal in Wish SCP Middleware Allows...
GHSA-xjvp-7243-rg9h: Critical Path Traversal in Wish SCP Middleware Allows Arbitrary File... Tagged with security, cve, cybersecurity, ghsa.
critical path
https://advisories.gitlab.com/maven/io.whitesource/curekit/CVE-2022-23082/
Relative Path Traversal | GitLab Advisory Database (GLAD)
CVE-2022-23082 Relative Path Traversal: In CureKit versions v1.0.1 through v1.1.3 is vulnerable to path traversal as the function isFileOutsideDir fails to...
relative pathtraversalgitlabadvisorydatabase
https://advisories.gitlab.com/composer/mautic/core/CVE-2021-27916/
Mautic vulnerable to Relative Path Traversal / Arbitrary File Deletion due to GrapesJS builder |...
CVE-2021-27916 Mautic vulnerable to Relative Path Traversal / Arbitrary File Deletion due to GrapesJS builder: Prior to the patched version, logged in users of...
relative path
https://advisories.gitlab.com/maven/org.apache.dolphinscheduler/dolphinscheduler/CVE-2022-34662/
Apache DolphinScheduler vulnerable to Path Traversal | GitLab Advisory Database (GLAD)
CVE-2022-34662 Apache DolphinScheduler vulnerable to Path Traversal: When users add resources to the resource center with a relation path, this vulnerability...
apache dolphinschedulerpath traversalvulnerablegitlabadvisory
https://advisories.gitlab.com/pypi/ubi-reader/CVE-2022-4572/
UBI Reader vulnerable to Path Traversal | GitLab Advisory Database (GLAD)
CVE-2022-4572 UBI Reader vulnerable to Path Traversal: A vulnerability, which was classified as problematic, has been found in UBI Reader up to 0.8.0. Affected...
path traversalubireadervulnerablegitlab
https://vuxml.freebsd.org/freebsd/ea9d1fd2-5d24-11ee-8507-b42e991fc52e.html
VuXML: routinator -- Possible path traversal when storing RRDP responses
path traversalvuxmlroutinatorpossiblestoring
https://advisories.gitlab.com/composer/magento/community-edition/CVE-2020-9689/
Magento path traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2020-9689 Magento path traversal vulnerability: Magento versions 2.3.5-p1 and earlier, and 2.3.5-p1 and earlier have a path traversal vulnerability....
path traversalmagentovulnerabilitygitlabadvisory
https://advisories.gitlab.com/golang/github.com/cri-o/cri-o/CVE-2025-0750/
CRI-O Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2025-0750 CRI-O Path Traversal vulnerability: A vulnerability was found in CRI-O. A path traversal issue in the log management functions (UnMountPodLogs...
path traversalcrivulnerabilitygitlabadvisory
https://advisories.gitlab.com/nuget/mpxj.net/CVE-2024-49771/
MPXJ has a Potential Path Traversal Vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-49771 MPXJ has a Potential Path Traversal Vulnerability: The patch for the historical vulnerability CVE-2020-35460 in MPXJ is incomplete as there is...
path traversalpotential
https://advisories.gitlab.com/pypi/openviking/CVE-2026-28518/
OpenViking contains a Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2026-28518 OpenViking contains a Path Traversal vulnerability: OpenViking versions 0.2.1 and prior, fixed in commit 46b3e76, contain a path traversal...
path traversalopenvikingcontainsvulnerabilitygitlab
https://advisories.gitlab.com/pypi/kaggle-mcp/CVE-2026-7149/
kaggle-mcp has a Path Traversal issue | GitLab Advisory Database (GLAD)
CVE-2026-7149 kaggle-mcp has a Path Traversal issue: A vulnerability has been found in dexhunter kaggle-mcp up to 406127ffcb2b91b8c10e20e6c2ca787fbc1dc92d....
path traversalkagglemcp
https://advisories.gitlab.com/pypi/llama-index-readers-obsidian/CVE-2025-3046/
LlamaIndex is vulnerable to Path Traversal attack through its ObsidianReader class | GitLab...
CVE-2025-3046 LlamaIndex is vulnerable to Path Traversal attack through its ObsidianReader class: A vulnerability in the ObsidianReader class in LlamaIndex...
path traversal
https://advisories.gitlab.com/npm/servst/CVE-2022-25936/
Servst vulnerable to Path Traversal | GitLab Advisory Database (GLAD)
CVE-2022-25936 Servst vulnerable to Path Traversal: Versions of the package servst before 2.0.3 are vulnerable to Directory Traversal due to improper...
path traversalvulnerablegitlabadvisorydatabase
https://advisories.gitlab.com/composer/icecoder/icecoder/CVE-2024-41373/
ICEcoder Path Traversal vulnerability | GitLab Advisory Database (GLAD)
CVE-2024-41373 ICEcoder Path Traversal vulnerability: ICEcoder 8.1 contains a Path Traversal vulnerability via lib/backup-versions-preview-loader.php.
path traversalvulnerabilitygitlabadvisorydatabase