Vulnerability index

Browse CVEs

1,369 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Link Following (Symlink)CWE-59 × clear
Parallels Desktop HIGH 7.8
CVE-2024-54189

A privilege escalation vulnerability exists in the Snapshot functionality of Parallels Desktop for Mac version 20.1.1 (build 55740). When a snapshot …

No fix yet
Fix from $1,950 2025-06-03
Parallels Desktop HIGH 7.8
CVE-2024-52561

A privilege escalation vulnerability exists in the Snapshot functionality of Parallels Desktop for Mac version 20.1.1 (build 55740). When a snapshot …

No fix yet
Fix from $1,950 2025-06-03
Parallels Desktop HIGH 7.8
CVE-2024-36486

A privilege escalation vulnerability exists in the virtual machine archive restoration functionality of Parallels Desktop for Mac version 20.1.1 (557…

No fix yet
Fix from $1,950 2025-06-03
Unclassified HIGH 7.8
CVE-2024-11857

Bluetooth HCI Adaptor from Realtek has a Link Following vulnerability. Local attackers with regular privileges can create a symbolic link with the sa…

Mitigation only
Fix from $1,950 2025-06-02
macOS MEDIUM 5.5
CVE-2025-31198

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. …

Fix: 13.7.5 / 14.7.5+
Fix from $1,600 2025-05-29
Edge Update HIGH 8.8
CVE-2025-47181

Improper link resolution before file access ('link following') in Microsoft Edge (Chromium-based) allows an authorized attacker to elevate privileges…

Fix: 1.3.195.61+
Fix from $1,950 2025-05-22
Unclassified MEDIUM 5.7
CVE-2025-2102

Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Passwordless on Windows allows Privilege Escalation.This issue a…

Mitigation only
Fix from $1,600 2025-05-21
Openvpn3linux MEDIUM 6.2
CVE-2025-3908

The configuration initialization tool in OpenVPN 3 Linux v20 through v24 on Linux allows a local attacker to use symlinks pointing at an arbitrary di…

Fix: after 24
Fix from $1,600 2025-05-19
Unclassified HIGH 7.3
CVE-2025-4211

Improper Link Resolution Before File Access ('Link Following') vulnerability in QFileSystemEngine in the Qt corelib module on Windows which potential…

Mitigation only
Fix from $1,950 2025-05-16
Unclassified HIGH 8.2
CVE-2025-20003

Improper link resolution before file access ('Link Following') for some Intel(R) Graphics Driver software installers may allow an authenticated user …

Mitigation only
Fix from $1,950 2025-05-13
Pc Manager HIGH 7.8
CVE-2025-29975

Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally.

Fix: 3.16.1.0+
Fix from $1,950 2025-05-13
Windows 10 1507 MEDIUM 5.5
CVE-2025-29837

Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to disclose information locally.

Fix: 10.0.10240.21014 / 10.0.14393.8066+
Fix from $1,600 2025-05-13
Web Designer HIGH 7.8
CVE-2025-1079

Client RCE on macOS and Linux via improper symbolic link resolution in Google Web Designer's preview feature

Fix: 16.2.0.0128+
Fix from $1,950 2025-05-12
Unclassified MEDIUM 6.1
CVE-2025-22247

VMware Tools contains an insecure file handling vulnerability. A malicious actor with non-administrative privileges on a guest VM may tamper the loca…

Mitigation only
Fix from $1,600 2025-05-12
Unclassified HIGH 7.8
CVE-2024-13759

Local Privilege Escalation in Avira.Spotlight.Service.exe in Avira Prime 1.1.96.2 on Windows 10 x64  allows local attackers to gain system-level priv…

Mitigation only
Fix from $1,950 2025-05-09
Unclassified HIGH 7.8
CVE-2024-13944

Link Following Local Privilege Escalation Vulnerability in NortonUtilitiesSvc in Norton Utilities Ultimate Version 24.2.16862.6344 on Windows 10 Pro …

Mitigation only
Fix from $1,950 2025-05-09
Unclassified HIGH 7.8
CVE-2024-13959

Link Following Local Privilege Escalation Vulnerability in TuneupSvc.exe in AVG TuneUp 24.2.16593.9844 on Windows allows local attackers to escalate …

Mitigation only
Fix from $1,950 2025-05-09
Unclassified HIGH 7.8
CVE-2024-13960

Link Following Local Privilege Escalation Vulnerability in TuneUp Service in AVG TuneUp Version 23.4 (build 15592) on Windows 10 allows local attacke…

Mitigation only
Fix from $1,950 2025-05-09
Unclassified HIGH 7.8
CVE-2024-13961

Link Following Local Privilege Escalation Vulnerability in TuneupSvc in Avast Cleanup Premium Version 24.2.16593.17810 on Windows 10 Pro x64 allows l…

Mitigation only
Fix from $1,950 2025-05-09
Unclassified HIGH 7.8
CVE-2024-13962

Link Following Local Privilege Escalation Vulnerability in TuneupSvc in Gen Digital Inc. Avast Cleanup Premium Version 24.2.16593.17810 on Windows 10…

Mitigation only
Fix from $1,950 2025-05-09
Unclassified HIGH 7.8
CVE-2024-9524

Link Following Local Privilege Escalation Vulnerability in System Speedup Service in Avira Operations GmbH Avira Prime Version 1.1.96.2 on Windows 10…

Mitigation only
Fix from $1,950 2025-05-09
Desktop HIGH 7.8
CVE-2025-3224

A vulnerability in the update process of Docker Desktop for Windows versions prior to 4.41.0 could allow a local, low-privileged attacker to escalate…

Fix: 4.41.0+
Fix from $1,950 2025-04-28
Touchpoint Analytics Service HIGH 7.8
CVE-2025-1697

A potential security vulnerability has been identified in the HP Touchpoint Analytics Service for certain HP PC products with versions prior to 4.2.2…

Fix: 4.2.2439+
Fix from $1,950 2025-04-18
Unclassified MEDIUM 6.1
CVE-2025-32817

A Improper Link Resolution vulnerability (CWE-59) in the SonicWall Connect Tunnel Windows (32 and 64 bit) client, this results in unauthorized file o…

Mitigation only
Fix from $1,600 2025-04-16
Trusted Device Agent HIGH 7.3
CVE-2025-29983

Dell Trusted Device, versions prior to 7.0.3.0, contain an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privil…

Fix: 7.0.3.0+
Fix from $1,950 2025-04-15
Unclassified HIGH 7.2
CVE-2025-23010

An Improper Link Resolution Before File Access ('Link Following') vulnerability in SonicWall NetExtender Windows (32 and 64 bit) client which allows …

Mitigation only
Fix from $1,950 2025-04-10
Windows 10 1507 HIGH 7.8
CVE-2025-27727

Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.20978 / 10.0.14393.7969+
Fix from $1,950 2025-04-08
Windows 10 1507 HIGH 7.8
CVE-2025-21204EPSS 7%

Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.20978 / 10.0.14393.7969+
Fix from $1,950 2025-04-08
macOS CRITICAL 9.8
CVE-2025-30457

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. …

Fix: 13.7.5 / 14.7.5+
Fix from $2,300 2025-03-31
macOS MEDIUM 5.5
CVE-2025-24278

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. …

Fix: 13.7.5 / 14.7.5+
Fix from $1,600 2025-03-31