Widelands is a turn-based strategy game whose vulnerability profile centers on a single product with a durable pattern of path-traversal issues affecting file handling and directory access. These weaknesses reflect the common structural risks in game engines and content-loading systems where user-supplied or untrusted input can escape intended directory boundaries.
The number and severity of CVEs published that impact products developed by Widelands over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2011-4675MEDIUM The pathname canonicalization functionality in io/filesystem/filesystem.cc in Widelands before 15.1 expands leading ~ (tilde) characters to home-directory pathnames but does not re | Dec 5, 2011 | 6.4 | 22 | NO | NO |
CVE-2011-1932MEDIUM Directory traversal vulnerability in io/filesystem/filesystem.cc in Widelands before 15.1 might allow remote attackers to overwrite arbitrary files via . (dot) characters in a path | Dec 5, 2011 | 6.4 | 21 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Widelands.
Media articles that mention a CVE ID that affects a product developed by Widelands — matched by CVE ID, not by vendor name.