Skip to content
Noroxi

CWE-29 · 63 records

Path Traversal: '\..\filename'

CVEs in this class

63 records

  • CVE-2023-1177
    60This week

    Path Traversal: '\..\filename' in mlflow/mlflow

    CriticalCVSS 9.8Proof of conceptEPSS 70%

    lfprojects · mlflowMar 24, 2023

  • Path Traversal: '\..\filename' in mlflow/mlflow

    HighCVSS 7.5Proof of conceptEPSS 90%

    lfprojects · mlflowDec 18, 2023

  • Arbitrary File Overwrite and Data Exfiltration in aimhubio/aim

    CriticalCVSS 9.8Proof of conceptEPSS 53%

    aimstack · aimJul 11, 2024

  • Directory Traversal in zenml-io/zenml

    CriticalCVSS 9.9Proof of conceptEPSS 37%

    zenml · zenmlApr 15, 2024

  • Remote Code Execution due to LFI in '/install_extension' in parisneo/lollms-webui

    CriticalCVSS 9.8Proof of conceptEPSS 34%

    lollms · lollms web uiJun 6, 2024

  • Path Traversal in parisneo/lollms

    CriticalCVSS 9.8No exploitEPSS 28%

    lollms · lollmsJun 6, 2024

  • Path Traversal Bypass in mlflow/mlflow

    HighCVSS 7.5Proof of conceptEPSS 43%

    lfprojects · mlflowMay 16, 2024

  • Path Traversal: '\..\filename' in salesagility/suitecrm

    HighCVSS 8.8No exploitEPSS 26%

    salesagility · suitecrmFeb 24, 2023

  • Ray Log File Local File Include

    HighCVSS 7.5Proof of conceptEPSS 37%

    ray project · rayNov 16, 2023

  • Path Traversal: '\..\filename' in mlflow/mlflow

    CriticalCVSS 9.8Proof of conceptEPSS 6%

    lfprojects · mlflowMay 17, 2023

  • Path Traversal: '\..\filename'

    CriticalCVSS 9.8No exploitEPSS 2%

    lfprojects · mlflowDec 20, 2023

  • Path Traversal leading to Remote Code Execution in parisneo/lollms-webui

    CriticalCVSS 9.8No exploitEPSS 2%

    lollms · lollms web uiJun 6, 2024

  • Path Traversal Vulnerability in mlflow/mlflow

    CriticalCVSS 10.0No exploitEPSS 1%

    lfprojects · mlflowMar 29, 2026

  • CVE-2024-4322
    39Monitor

    Path Traversal in parisneo/lollms-webui

    HighCVSS 7.5Proof of conceptEPSS 31%

    lollms · lollms web uiMay 16, 2024

  • CVE-2024-2624
    39Monitor

    Path Traversal and Arbitrary File Upload Vulnerability in parisneo/lollms-webui

    CriticalCVSS 9.8No exploitEPSS 1%

    lollms · lollms web uiJun 6, 2024

  • CVE-2024-5443
    39Monitor

    Remote Code Execution via Path Traversal in parisneo/lollms

    CriticalCVSS 9.8No exploitEPSS 1%

    parisneo · parisneo/lollmsJun 22, 2024

  • CVE-2024-2358
    39Monitor

    Path Traversal leading to Remote Code Execution in parisneo/lollms-webui

    CriticalCVSS 9.8No exploitEPSS 1%

    lollms · lollms web uiMay 16, 2024

  • CVE-2023-0104
    38Monitor

    The listed versions for Weintek EasyBuilder Pro are vulnerable to a ZipSlip attack caused by decompiling a malicious project file.

    HighCVSS 7.8No exploitEPSS 22%

    weintek · easybuilder proFeb 22, 2023

  • CVE-2024-2356
    38Monitor

    Remote Code Execution due to LFI in '/reinstall_extension' in parisneo/lollms-webui

    CriticalCVSS 9.6No exploitEPSS 1%

    parisneo · parisneo/lollms-webuiFeb 2, 2026

  • CVE-2024-2361
    38Monitor

    Arbitrary Upload & Read via Path Traversal in parisneo/lollms-webui

    CriticalCVSS 9.6No exploitEPSS 1%

    lollms · lollms web uiMay 16, 2024

  • CVE-2024-2928
    37Monitor

    Local File Inclusion (LFI) via URI Fragment Parsing in mlflow/mlflow

    HighCVSS 7.5Proof of conceptEPSS 22%

    lfprojects · mlflowJun 6, 2024

  • CVE-2024-3573
    37Monitor

    Local File Inclusion (LFI) via Scheme Confusion in mlflow/mlflow

    CriticalCVSS 9.3No exploitEPSS 1%

    lfprojects · mlflowApr 15, 2024

  • An issue was discovered in HSC Mailinspector 5.2.17-3 through v.5.2.18.

    HighCVSS 8.6Proof of conceptEPSS 7%

    hsclabs · mailinspectorMay 6, 2024

  • Path Traversal in danny-avila/librechat

    HighCVSS 8.8No exploitEPSS 2%

    librechat · librechatMar 20, 2025

  • CVE-2024-8537
    36Monitor

    Path Traversal in modelscope/agentscope

    CriticalCVSS 9.1No exploitEPSS 1%

    modelscope · agentscopeMar 20, 2025

All vulnerability classes