Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CWE-24

Path Traversal: '../filedir'

The product uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize "../" sequences that can resolve to a location that is outside of that directory.

113
Assigned CVEs
164th
Commonality Rank
7.1
Avg CVSS
0.9%
In CISA KEV

Volume and Severity of Assigned CVEs Over Time

Volume of CVEs assigned to CWE-24 and their average CVSS base score over time.

Volume of CVEsAvg CVSS Base Score
First CVE
Aug 14, 2020
5 years ago
Most Recent CVE
Jul 24, 2026
2 days ago

Top CVEs Assigned This CWE

Top CVEs that have been assigned this CWE. A single CVE can have multiple CWE assignments, though many have just one.

113 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2025-27920HIGH
Output Messenger before 2.0.63 was vulnerable to a directory traversal attack through improper file path handling. By using ../ sequences in parameters, attackers could access sens
May 5, 20258.868YESNO
CVE-2026-39813CRITICAL
A path traversal: '../filedir' vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8 may allow attacker to escalation of privilege via specia
Apr 14, 20269.853NONO
CVE-2025-59342MEDIUM
esm.sh is a nobuild content delivery network(CDN) for modern web development. In 136 and earlier, a path-traversal flaw in the handling of the X-Zone-Id HTTP header allows an attac
Sep 17, 20255.541NOYES
CVE-2025-54769HIGH
An authenticated, read-only user can upload a file and perform a directory traversal to have the uploaded file placed in a location of their choosing. This can be used to overwrit
Jul 29, 20258.841NOYES
CVE-2022-38129CRITICAL
A path traversal vulnerability exists in the com.keysight.tentacle.licensing.LicenseManager.addLicenseFile() method in the Keysight Sensor Management Server (SMS). This allows an u
Aug 10, 20229.840NONO
CVE-2026-66140HIGH
Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.
Jul 24, 20268.436NONO
CVE-2025-59049HIGH
Mockoon provides way to design and run mock APIs. Prior to version 9.2.0, a mock API configuration for static file serving follows the same approach presented in the documentation
Sep 10, 20257.536NOYES
CVE-2024-6746HIGH
A vulnerability classified as problematic was found in NaiboWang EasySpider 0.6.2 on Windows. Affected by this vulnerability is an unknown functionality of the file \EasySpider\res
Jul 15, 20248.836NOYES
CVE-2026-49103CRITICAL
Webmin before 2.640 does not safely construct a filename for saving of an attachment within the mailboxes component. This occurs in mailboxes/detachall.cgi.
May 27, 20269.433NONO
CVE-2026-22810HIGH
Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks. Versions prior to 3.5.7 contain a path traversal vulnerability in the impo
May 18, 20267.333NONO
View all 113 CVEs →

CVE Severity & Scoring

This CWEGlobal (All CVEs)
0.0-0.9
1.0-1.9
2.0-2.9
3.0-3.9
12%
10%
4.0-4.9
15%
19%
5.0-5.9
16%
16%
6.0-6.9
28%
26%
7.0-7.9
11%
11%
8.0-8.9
17%
14%
9.0-10.0
unknown
CVSS Score Range

Exploit Exposure

Exploit activity across CVEs assigned to this CWE, including CVEs that carry other CWE assignments.

CISA KEV
1 CVE
0.9% of CVEs· 90th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
4 CVEs
3.5% of CVEs· 94th percentile
ExploitDB
2 CVEs
1.8% of CVEs· 87th percentile

Social Chatter

Social posts that mention CVE IDs assigned to this CWE. This is assigned-CVE activity, not mentions of the CWE label itself.

Media Mentions

Media articles that mention CVE IDs assigned to this CWE. This is assigned-CVE coverage, not mentions of the CWE label itself.

Top Affected Vendors

Top Affected Products