Vulnerability index

Browse CVEs

33 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Path TraversalCWE-22 × clear
CRITICAL 9.8 CVE-2026-65768 Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Teams for Android allows an unauthorized attacker to exec… Teams 1.0.0.2026133602+ Fix from $5,7502026-08-11 HIGH 8.8 CVE-2026-49163 Improper limitation of a pathname to a restricted directory ('path traversal') in Application Insights Profiler allows an authorized attacker to elev… Application Insights Profiler No fix yet Fix from $1,9502026-08-07 MEDIUM 5.5 CVE-2026-45496 Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code allows an unauthorized attacker to bypass a secu… Visual Studio Code 1.128.1+ Fix from $1,6002026-07-14 HIGH 8.4 CVE-2026-45482 Improper limitation of a pathname to a restricted directory ('path traversal') in GitHub Copilot and Visual Studio Code allows an unauthorized attack… Visual Studio Code 1.123.2+ Fix from $1,9502026-06-09 HIGH 8.8 CVE-2026-45454 Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Office SharePoint allows an authorized attacker to execut… Sharepoint Server 16.0.19725.20384+ Fix from $1,9502026-06-09 HIGH 8.8 CVE-2026-32193 Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Azure Kubernetes Service allows an authorized attacker to… Azure Kubernetes Service 2026-02-13.5+ Fix from $1,9502026-06-09 MEDIUM 5.5 CVE-2026-41612 Relative path traversal in Visual Studio Code allows an unauthorized attacker to disclose information locally. Live Preview 0.4.19+ Fix from $1,6002026-05-12 MEDIUM 6.7 CVE-2026-26124 '.../...//' in Azure Compute Gallery allows an authorized attacker to elevate privileges locally. Aci Confidential Containers No fix yet Fix from $1,6002026-03-05 CRITICAL 9.8 CVE-2026-21227 Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorized attacker to elevate privile… Azure Logic Apps Mitigation only Fix from $2,3002026-01-22 MEDIUM 6.8 CVE-2025-62449 Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code CoPilot Chat Extension allows an authorized atta… Github Copilot Chat 0.32.0+ Fix from $1,6002025-11-11 MEDIUM 6.5 CVE-2025-60722 Improper limitation of a pathname to a restricted directory ('path traversal') in OneDrive for Android allows an authorized attacker to elevate privi… Onedrive 7.42+ Fix from $1,6002025-11-11 HIGH 7.5 CVE-2025-53793 Improper authentication in Azure Stack allows an unauthorized attacker to disclose information over a network. Azure Stack Hub 1.2406.1.23 / 1.2408.1.50+ Fix from $1,9502025-08-12 HIGH 7.8 CVE-2025-47176 '.../...//' in Microsoft Office Outlook allows an authorized attacker to execute code locally. 365 Apps No fix yet Fix from $1,9502025-06-10 CRITICAL 9.8 CVE-2025-30387 Improper limitation of a pathname to a restricted directory ('path traversal') in Azure allows an unauthorized attacker to elevate privileges over a … Azure Ai Document Intelligence Studio Mitigation only Fix from $2,3002025-05-13 MEDIUM 6.8 CVE-2024-49082 Windows File Explorer Information Disclosure Vulnerability Windows 10 1507 10.0.10240.20857 / 10.0.14393.7606+ Fix from $1,6002024-12-12 HIGH 8.8 CVE-2024-29053 Microsoft Defender for IoT Remote Code Execution Vulnerability Defender For Iot 24.1.3+ Fix from $1,9502024-04-09 CRITICAL 9.0 CVE-2024-21400 Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerability Confidental Containers 0.3.3+ Fix from $2,3002024-03-12 HIGH 7.0 CVE-2023-38176 Azure Arc-Enabled Servers Elevation of Privilege Vulnerability Azure Arc Enabled Servers 1.33.02399.0+ Fix from $1,9502023-08-08 HIGH 7.8 CVE-2022-4510EPSS 22% A path traversal vulnerability was identified in ReFirm Labs binwalk from version 2.1.2b through 2.3.3 included. By crafting a malicious PFS filesyst… Binwalk 2.3.3+ Fix from $1,9502023-01-26 MEDIUM 5.5 CVE-2022-29799EPSS 12% A vulnerability was found in networkd-dispatcher. This flaw exists because no functions are sanitized by the OperationalState or the AdministrativeSt… Windows Defender For Endpoint Patch available Fix from $1,6002022-09-21 HIGH 7.8 CVE-2022-21999 KEVEPSS 42% Windows Print Spooler Elevation of Privilege Vulnerability Windows 10 1507 10.0.10240.19204 / 10.0.14393.4946+ Fix from $1,9502022-02-09 HIGH 8.8 CVE-2021-40444 KEVEPSS 97% Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted … Windows 10 1507 10.0.10240.19060 / 10.0.14393.4651+ Fix from $1,9502021-09-15 HIGH 7.8 CVE-2021-27065 KEVEPSS 100% Microsoft Exchange Server Remote Code Execution Vulnerability Exchange Server Patch available Fix from $1,9502021-03-03 HIGH 7.8 CVE-2020-1082 An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files, aka 'Windows Error Reporting Ele… Windows 10 Patch available Fix from $1,9502020-05-21 HIGH 7.8 CVE-2019-16765EPSS 5% If an attacker can get a user to open a specially prepared directory tree as a workspace in Visual Studio Code with the CodeQL extension active, arbi… Codeql 1.0.1+ Fix from $1,9502019-11-25 MEDIUM 5.5 CVE-2019-1142 An elevation of privilege vulnerability exists when the .NET Framework common language runtime (CLR) allows file creation in arbitrary locations, aka… .net Framework Patch available Fix from $1,6002019-09-11 HIGH 8.0 CVE-2019-0887EPSS 71% A remote code execution vulnerability exists in Remote Desktop Services - formerly known as Terminal Services - when an authenticated attacker abuses… Remote Desktop Client 1.2.2691+ Fix from $1,9502019-07-15 HIGH 7.5 CVE-2018-8495EPSS 51% A remote code execution vulnerability exists when Windows Shell improperly handles URIs, aka "Windows Shell Remote Code Execution Vulnerability." Thi… Windows 10 Patch available Fix from $1,9502018-10-10 HIGH 7.8 CVE-2015-0016 KEVEPSS 76% Directory traversal vulnerability in the TS WebProxy (aka TSWbPrxy) component in Microsoft Windows Vista SP2, Windows 7 SP1, Windows Server 2008 R2 S… Windows 7 Patch available Fix from $1,9502015-01-13 HIGH 7.5 CVE-2013-0084EPSS 21% Directory traversal vulnerability in Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allows remote attackers to bypass intend… Sharepoint Foundation Mitigation only Fix from $1,9502013-03-13