← All weakness types
Path Traversal
CWE-229,260 vulnerabilities are classified as Path Traversal (CWE-22). The most exploitable are shown first (by EPSS), each with its CVSS score, exploit-prediction, CISA KEV status, and available fix.
| CVE | Severity | CVSS | EPSS | Exploited | Fix |
|---|---|---|---|---|---|
| CVE-2024-23897 | Critical | 9.8 | 100% | KEV + Ransom | Fix |
| CVE-2023-32315 | High | 8.6 | 100% | KEV | Fix |
| CVE-2022-29464 | Critical | 9.8 | 100% | KEV + Ransom | - |
| CVE-2021-26086 | Medium | 5.3 | 100% | KEV | Fix |
| CVE-2021-22005 | Critical | 9.8 | 100% | KEV + Ransom | Fix |
| CVE-2020-5902 | Critical | 9.8 | 100% | KEV + Ransom | Fix |
| CVE-2019-19781 | Critical | 9.8 | 100% | KEV + Ransom | - |
| CVE-2019-11510 | Critical | 10.0 | 100% | KEV + Ransom | - |
| CVE-2018-13379 | Critical | 9.1 | 100% | KEV + Ransom | Fix |
| CVE-2021-41773 | Critical | 9.8 | 100% | KEV + Ransom | Fix |
| CVE-2020-3452 | High | 7.5 | 100% | KEV | Fix |
| CVE-2024-27199 | High | 7.3 | 100% | KEV + Ransom | Fix |
| CVE-2021-20090 | Critical | 9.8 | 100% | KEV | - |
| CVE-2021-42013 | Critical | 9.8 | 100% | KEV + Ransom | Fix |
| CVE-2021-27065 | High | 7.8 | 100% | KEV + Ransom | Fix |
| CVE-2019-3396 | Critical | 9.8 | 100% | KEV + Ransom | Fix |
| CVE-2018-0296 | High | 7.5 | 100% | KEV | Fix |
| CVE-2010-2861 | Critical | 9.8 | 100% | KEV + Ransom | - |
| CVE-2008-2938 | Medium | 4.3 | 100% | - | - |
| CVE-2024-28995 | High | 8.6 | 100% | KEV | Fix |
| CVE-2021-21972 | Critical | 9.8 | 100% | KEV + Ransom | Fix |
| CVE-2017-1000028 | High | 7.5 | 99% | - | - |
| CVE-2024-32113 | Critical | 9.8 | 99% | KEV | Fix |
| CVE-2024-4885 | Critical | 9.8 | 99% | KEV | Fix |
| CVE-2019-16278 | Critical | 9.8 | 99% | KEV | Fix |
| CVE-2022-30333 | High | 7.5 | 99% | KEV + Ransom | Fix |
| CVE-2023-47246 | Critical | 9.8 | 99% | KEV + Ransom | Fix |
| CVE-2024-8963 | Critical | 9.4 | 99% | KEV | - |
| CVE-2019-5418 | High | 7.5 | 99% | KEV | Fix |
| CVE-2014-5445 | Medium | 5.0 | 98% | - | - |
| CVE-2022-27925 | High | 7.2 | 98% | KEV + Ransom | - |
| CVE-2024-41713 | Critical | 9.1 | 98% | KEV + Ransom | - |
| CVE-2020-11738 | High | 7.5 | 98% | KEV | Fix |
| CVE-2018-15745 | High | 7.5 | 98% | - | - |
| CVE-2025-61884 | High | 7.5 | 98% | KEV + Ransom | - |
| CVE-2020-12116 | High | 7.5 | 97% | - | - |
| CVE-2016-6601 | High | 7.5 | 97% | - | - |
| CVE-2020-14864 | High | 7.5 | 97% | KEV | - |
| CVE-2021-41277 | Critical | 10.0 | 97% | KEV | - |
| CVE-2025-34028 | Critical | 10.0 | 97% | KEV | Fix |
| CVE-2019-3398 | High | 8.8 | 97% | KEV | Fix |
| CVE-2020-11455 | Critical | 9.8 | 97% | - | - |
| CVE-2021-40444 | High | 8.8 | 97% | KEV + Ransom | Fix |
| CVE-2019-17662 | Critical | 9.8 | 97% | - | - |
| CVE-2020-3187 | Critical | 9.1 | 97% | - | Fix |
| CVE-2021-30497 | High | 7.5 | 97% | - | - |
| CVE-2018-20250 | High | 7.8 | 96% | KEV + Ransom | - |
| CVE-2018-14847 | Critical | 9.1 | 96% | KEV | - |
| CVE-2019-20085 | High | 7.5 | 96% | KEV | - |
| CVE-2020-5410 | High | 7.5 | 96% | KEV | Fix |
| CVE-2016-0752 | High | 7.5 | 96% | KEV | Fix |
| CVE-2022-41352 | Critical | 9.8 | 95% | KEV | - |
| CVE-2011-0049 | Medium | 5.0 | 95% | - | - |
| CVE-2024-57727 | High | 7.5 | 95% | KEV + Ransom | Fix |
| CVE-2020-6754 | Critical | 9.8 | 95% | - | Fix |
| CVE-2017-12637 | High | 7.5 | 95% | KEV | - |
| CVE-2016-7552 | Critical | 9.8 | 93% | - | - |
| CVE-2018-14912 | High | 7.5 | 93% | - | Fix |
| CVE-2022-21371 | High | 7.5 | 92% | - | - |
| CVE-2024-9047 | Critical | 9.8 | 92% | - | Fix |
| CVE-2021-25282 | Critical | 9.1 | 92% | - | Fix |
| CVE-2019-8943 | Medium | 6.5 | 92% | - | - |
| CVE-2024-7399 | High | 8.8 | 92% | KEV | Fix |
| CVE-2015-5531 | Medium | 5.0 | 92% | - | - |
| CVE-2017-16806 | High | 7.5 | 91% | - | - |
| CVE-2007-0450 | Medium | 5.0 | 91% | - | Fix |
| CVE-2018-11759 | High | 7.5 | 91% | - | Fix |
| CVE-2016-6600 | Critical | 9.8 | 90% | - | - |
| CVE-2020-27871 | High | 7.2 | 90% | - | - |
| CVE-2023-32563 | Critical | 9.8 | 90% | - | Fix |
| CVE-2019-7195 | Critical | 9.8 | 90% | KEV + Ransom | Fix |
| CVE-2020-8604 | High | 7.5 | 90% | - | - |
| CVE-2024-37032 | High | 8.8 | 90% | - | Fix |
| CVE-2022-24716 | High | 7.5 | 89% | - | Fix |
| CVE-2021-43798 | High | 7.5 | 89% | KEV | Fix |
| CVE-2022-37042 | Critical | 9.8 | 88% | KEV + Ransom | - |
| CVE-2024-36104 | Critical | 9.1 | 88% | - | Fix |
| CVE-2024-1708 | High | 8.4 | 88% | KEV + Ransom | Fix |
| CVE-2022-31706 | Critical | 9.8 | 87% | - | Fix |
| CVE-2015-2996 | High | 8.5 | 87% | - | - |
| CVE-2013-7091 | Medium | 5.0 | 86% | - | - |
| CVE-2025-6218 | High | 7.8 | 86% | KEV | Fix |
| CVE-2020-11652 | Medium | 6.5 | 86% | KEV | Fix |
| CVE-2011-0063 | Medium | 5.0 | 85% | - | - |
| CVE-2024-1728 | High | 7.5 | 85% | - | Fix |
| CVE-2019-3799 | Medium | 6.5 | 85% | - | Fix |
| CVE-2023-41266 | High | 8.2 | 85% | KEV + Ransom | - |
| CVE-2023-38950 | High | 7.5 | 85% | KEV | Fix |
| CVE-2023-32164 | High | 7.5 | 85% | - | - |
| CVE-2015-1830 | Medium | 5.0 | 84% | - | - |
| CVE-2023-40502 | Critical | 9.1 | 84% | - | - |
| CVE-2023-40494 | Critical | 9.1 | 84% | - | - |
| CVE-2023-40492 | Critical | 9.1 | 84% | - | - |
| CVE-2019-12314 | Critical | 9.8 | 84% | - | - |
| CVE-2014-6037 | High | 7.5 | 84% | - | - |
| CVE-2009-2265 | High | 7.5 | 84% | - | - |
| CVE-2019-1620 | Critical | 9.8 | 84% | - | - |
| CVE-2015-3035 | High | 7.5 | 84% | KEV | Fix |
| CVE-2012-4940 | Medium | 6.4 | 84% | - | - |
| CVE-2022-36981 | Critical | 9.8 | 83% | - | Fix |
Showing the top 100 of 9,260. Browse all 9,260 in the lookup tool.