Vulnerability index

Browse CVEs

1,369 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Link Following (Symlink)CWE-59 × clear
HIGH 7.8 CVE-2024-54189 A privilege escalation vulnerability exists in the Snapshot functionality of Parallels Desktop for Mac version 20.1.1 (build 55740). When a snapshot … Parallels Desktop No fix yet Fix from $1,9502025-06-03 HIGH 7.8 CVE-2024-52561 A privilege escalation vulnerability exists in the Snapshot functionality of Parallels Desktop for Mac version 20.1.1 (build 55740). When a snapshot … Parallels Desktop No fix yet Fix from $1,9502025-06-03 HIGH 7.8 CVE-2024-36486 A privilege escalation vulnerability exists in the virtual machine archive restoration functionality of Parallels Desktop for Mac version 20.1.1 (557… Parallels Desktop No fix yet Fix from $1,9502025-06-03 HIGH 7.8 CVE-2024-11857 Bluetooth HCI Adaptor from Realtek has a Link Following vulnerability. Local attackers with regular privileges can create a symbolic link with the sa… Mitigation only Fix from $1,9502025-06-02 MEDIUM 5.5 CVE-2025-31198 This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. … macOS 13.7.5 / 14.7.5+ Fix from $1,6002025-05-29 HIGH 8.8 CVE-2025-47181 Improper link resolution before file access ('link following') in Microsoft Edge (Chromium-based) allows an authorized attacker to elevate privileges… Edge Update 1.3.195.61+ Fix from $1,9502025-05-22 MEDIUM 5.7 CVE-2025-2102 Improper Link Resolution Before File Access ('Link Following') vulnerability in HYPR Passwordless on Windows allows Privilege Escalation.This issue a… Mitigation only Fix from $1,6002025-05-21 MEDIUM 6.2 CVE-2025-3908 The configuration initialization tool in OpenVPN 3 Linux v20 through v24 on Linux allows a local attacker to use symlinks pointing at an arbitrary di… Openvpn3linux after 24 Fix from $1,6002025-05-19 HIGH 7.3 CVE-2025-4211 Improper Link Resolution Before File Access ('Link Following') vulnerability in QFileSystemEngine in the Qt corelib module on Windows which potential… Mitigation only Fix from $1,9502025-05-16 HIGH 8.2 CVE-2025-20003 Improper link resolution before file access ('Link Following') for some Intel(R) Graphics Driver software installers may allow an authenticated user … Mitigation only Fix from $1,9502025-05-13 HIGH 7.8 CVE-2025-29975 Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally. Pc Manager 3.16.1.0+ Fix from $1,9502025-05-13 MEDIUM 5.5 CVE-2025-29837 Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to disclose information locally. Windows 10 1507 10.0.10240.21014 / 10.0.14393.8066+ Fix from $1,6002025-05-13 HIGH 7.8 CVE-2025-1079 Client RCE on macOS and Linux via improper symbolic link resolution in Google Web Designer's preview feature Web Designer 16.2.0.0128+ Fix from $1,9502025-05-12 MEDIUM 6.1 CVE-2025-22247 VMware Tools contains an insecure file handling vulnerability. A malicious actor with non-administrative privileges on a guest VM may tamper the loca… Mitigation only Fix from $1,6002025-05-12 HIGH 7.8 CVE-2024-13759 Local Privilege Escalation in Avira.Spotlight.Service.exe in Avira Prime 1.1.96.2 on Windows 10 x64  allows local attackers to gain system-level priv… Mitigation only Fix from $1,9502025-05-09 HIGH 7.8 CVE-2024-13944 Link Following Local Privilege Escalation Vulnerability in NortonUtilitiesSvc in Norton Utilities Ultimate Version 24.2.16862.6344 on Windows 10 Pro … Mitigation only Fix from $1,9502025-05-09 HIGH 7.8 CVE-2024-13959 Link Following Local Privilege Escalation Vulnerability in TuneupSvc.exe in AVG TuneUp 24.2.16593.9844 on Windows allows local attackers to escalate … Mitigation only Fix from $1,9502025-05-09 HIGH 7.8 CVE-2024-13960 Link Following Local Privilege Escalation Vulnerability in TuneUp Service in AVG TuneUp Version 23.4 (build 15592) on Windows 10 allows local attacke… Mitigation only Fix from $1,9502025-05-09 HIGH 7.8 CVE-2024-13961 Link Following Local Privilege Escalation Vulnerability in TuneupSvc in Avast Cleanup Premium Version 24.2.16593.17810 on Windows 10 Pro x64 allows l… Mitigation only Fix from $1,9502025-05-09 HIGH 7.8 CVE-2024-13962 Link Following Local Privilege Escalation Vulnerability in TuneupSvc in Gen Digital Inc. Avast Cleanup Premium Version 24.2.16593.17810 on Windows 10… Mitigation only Fix from $1,9502025-05-09 HIGH 7.8 CVE-2024-9524 Link Following Local Privilege Escalation Vulnerability in System Speedup Service in Avira Operations GmbH Avira Prime Version 1.1.96.2 on Windows 10… Mitigation only Fix from $1,9502025-05-09 HIGH 7.8 CVE-2025-3224 A vulnerability in the update process of Docker Desktop for Windows versions prior to 4.41.0 could allow a local, low-privileged attacker to escalate… Desktop 4.41.0+ Fix from $1,9502025-04-28 HIGH 7.8 CVE-2025-1697 A potential security vulnerability has been identified in the HP Touchpoint Analytics Service for certain HP PC products with versions prior to 4.2.2… Touchpoint Analytics Service 4.2.2439+ Fix from $1,9502025-04-18 MEDIUM 6.1 CVE-2025-32817 A Improper Link Resolution vulnerability (CWE-59) in the SonicWall Connect Tunnel Windows (32 and 64 bit) client, this results in unauthorized file o… Mitigation only Fix from $1,6002025-04-16 HIGH 7.3 CVE-2025-29983 Dell Trusted Device, versions prior to 7.0.3.0, contain an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privil… Trusted Device Agent 7.0.3.0+ Fix from $1,9502025-04-15 HIGH 7.2 CVE-2025-23010 An Improper Link Resolution Before File Access ('Link Following') vulnerability in SonicWall NetExtender Windows (32 and 64 bit) client which allows … Mitigation only Fix from $1,9502025-04-10 HIGH 7.8 CVE-2025-27727 Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.20978 / 10.0.14393.7969+ Fix from $1,9502025-04-08 HIGH 7.8 CVE-2025-21204EPSS 7% Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.20978 / 10.0.14393.7969+ Fix from $1,9502025-04-08 CRITICAL 9.8 CVE-2025-30457 This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. … macOS 13.7.5 / 14.7.5+ Fix from $2,3002025-03-31 MEDIUM 5.5 CVE-2025-24278 This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. … macOS 13.7.5 / 14.7.5+ Fix from $1,6002025-03-31