Results for "Path traversal"
- Article
CVE-2025-51463: Aim Path Traversal in Server Backup Restoration
A path traversal vulnerability was found in AIM server. This vulnerability allows remote attackers to write arbitrary files on the server’s filesystem via a mal…
- Article
CVE-2025-51480: ONNX Arbitrary File Overwrite in save_external_data
Arbitrary file overwrite vulnerability in ONNX library’s save_external_data function through path traversal attacks.
- Article
CVE-2025-51481: Dagster LFI in gRPC Server’s ExternalNotebookData Endpoint
Local file inclusion vulnerability in Dagster’s gRPC server allowing arbitrary file reading through path traversal in notebook data endpoint.
- Article
CVE-2026-25055: n8n Arbitrary File Write on Remote Systems via SSH Node
Path traversal vulnerability in n8n’s Webhook node allows attackers to write files to arbitrary locations on remote servers connected via SSH.
- Article
CVE-2025-51475: SuperAGI AFO in File Upload Endpoint
Arbitrary file overwrite vulnerability in SuperAGI’s file upload functionality due to insufficient path sanitization.
- Article
CVE-2025-51459: DB-GPT RCE in DB-GPT Plugin Upload System
Remote code execution vulnerability in DB-GPT’s plugin upload functionality through unsafe Python code execution.
- Article
Why Static Analysis Struggles with Business Logic Vulnerabilities
The gap between tracking where data flows and reasoning about whether the logic is correct.
- Article
Business Logic Is AppSec’s Unsolved Problem
Broken access control has been the #1 vulnerability class since 2021. This post explores why it’s unsolved, why it will get worse, and how LLMs can bridge the g…
- Article
CVE-2025-48889: Gradio Unauthorized File Copy via Path Manipulation
Arbitrary file copy vulnerability in Gradio’s flagging feature allows unauthenticated attackers to copy any readable file from the server’s filesystem.
Showing 1 - 9 of 9 results