Tanium addressed a local privilege escalation vulnerability in Patch Endpoint Tools.
This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Tahoe 26.3. An app may be able
A security flaw has been discovered in Softland FBackup up to 9.9. This impacts an unknown function in the library C:\Pr
BentoML is a Python library for building online serving systems optimized for AI apps and model inference. Prior to 1.4.
Avira Internet Security contains an improper link resolution vulnerability in the Software Updater component. During the
Improper link resolution before file access ('link following') in Winlogon allows an authorized attacker to elevate priv
This vulnerability allows an attacker to create a junction, enabling the deletion of arbitrary files with SYSTEM privile
The Claude Desktop app gives you Claude Code with a graphical interface built for running multiple sessions side by side
gitoxide is an implementation of git written in Rust. Prior to 0.21.1, a malicious tree can be constructed that will, wh
Improper link resolution before file access ('link following') in Microsoft Defender allows an authorized attacker to el
Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
A link following vulnerability in the Trend Micro Apex One scan engine could allow a local attacker to escalate privileg
Improper link resolution before file access ('link following') in Winlogon allows an authorized attacker to elevate priv
Improper link resolution before file access ('link following') in Windows Collaborative Translation Framework allows an
Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to
Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicl
Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain an Improper Link Resolution Before File Access vul
Improper privilege management in Windows WalletService allows an authorized attacker to elevate privileges locally.
Improper link resolution before file access ('link following') in Window PC Manager allows an authorized attacker to ele
Improper link resolution before file access ('link following') in Windows Projected File System allows an authorized att
G DATA Total Security Backup Service Link Following Local Privilege Escalation Vulnerability. This vulnerability allows
Link following vulnerability in the Uninstaller component in CCleaner prior to 7.10.1464 on Windows allows a local, low-
A flaw was found in libvirt. A local attacker, specifically a process running as the confined `swtpm` user, could exploi
Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) al
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to e
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to e
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to e
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to e
Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to e
Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorized atta
rsync before 3.5.0 contains a symlink following vulnerability that allows local attackers to overwrite arbitrary files b
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to overwrite arbitrary files due to improper
A flaw was found in sos clean, a utility within the sos package. This vulnerability allows a local attacker to perform a
In CodeMeter Runtime from version 8.40 to (excluding) 8.41a and 9.00 to (excluding) 9.10, cmu.exe --create-io --file C:
Weblate is a web based localization tool. In versions prior to 5.17, the ZIP download feature didn't verify downloaded f
A flaw was found in KubeVirt's virt-exportserver component. An attacker with specific namespace-level access can exploit
DBD::File versions before 1.651 for Perl do not ensure the table file is not a symlink to an untrusted location. The co
Weblate is a web-based continuous localization platform used to manage software translations. In versions prior to 2026.
Kitty is a cross-platform GPU based terminal. In versions 0.47.0 and 0.47.1, `kitten dnd` can allow a malicious remote d
WeGIA is a web manager for charitable institutions. In 3.6.5, The patched loadBackupDB() extracts tar.gz archives to a t
BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. P
Froxlor is open source server administration software. Prior to version 2.3.6, `DataDump.add()` constructs the export de
PraisonAI is a multi-agent teams system. Prior to version 4.6.37, the _safe_extractall helper that all recipe pull, reci
apko allows users to build and publish OCI container images built from apk packages. From version 0.14.8 to before versi
The locally served web site on the Garmin WDU (v1 1.4.6 and v2 5.0) allows a symlink attack. If a malicious graphics pac
Archive::Tar versions before 3.08 for Perl extract hardlinks to attacker controlled paths outside the extraction directo
Jenkins Pipeline: Groovy Libraries Plugin 797.v90ea_a_9b_e45a_0 and earlier does not prohibit symbolic links in shared l
File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a spec
decompress before 4.2.2 allows arbitrary symlink creation during archive extraction. When processing symlink entries (ty
Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1
Frequently Asked Questions
What is CWE-59?
CWE-59 (CWE-59) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-59?
There are 327 CVE records associated with CWE-59 in our database. Of these, 17 are critical severity, 129 are high severity, and 132 are medium severity.
How can I protect against CWE-59 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-59 using AI-powered security agents.
Detect CWE-59 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-59 vulnerabilities across your infrastructure.
Get Started