OpenClaw versions prior to 2026.3.2 contain a vulnerability in the stageSandboxMedia function in which it fails to valid
bit7z is a cross-platform C++ static library that allows the compression/extraction of archive files. Prior to version 4
setupBpmLogs follows symlink for bpm.log open and chown — container-to-host privilege escalation via /etc/shadow. A comp
Capgo CLI before 12.128.2 contains arbitrary file overwrite vulnerabilities in login and build credentials operations th
Chrome DevTools for agents (chrome-devtools-mcp) lets your coding agent control and inspect a live Chrome browser. From
Chrome DevTools for agents (chrome-devtools-mcp) lets your coding agent control and inspect a live Chrome browser. From
Claude Code is an agentic coding tool. From 2.1.59 until 2.1.128, the Claude Code /copy command wrote responses to a ha
Sparkle is a software update framework for macOS. Prior to version 2.9.2, `Autoupdate/SUBinaryDeltaApply.m` enforces `re
OpenTofu before 1.11.7 fails to validate existing symlinks in the provider cache directory during initialization. Attack
HashiCorp Nomad and Nomad Enterprise prior to 2.0.1 are vulnerable to arbitrary file read and write on the client host a
HashiCorp Nomad’s exec2 task driver prior to 0.1.2 is vulnerable to arbitrary file read and write on the client host as
Dell iDRAC Tools, versions prior to 11.4.1.0, contains an Improper Link Resolution Before File Access ('Link Following')
rsync before 3.5.0 contains a symlink race condition vulnerability in the sender's directory scanning logic that allows
Improper Link Resolution Before File Access (invoked by 1E‑Explorer‑TachyonCore‑DeleteFileByPath instruction) in TeamVie
An improper link following vulnerability was reported in the SmartPerformanceAddin for Lenovo Vantage that could allow a
Tanium addressed an arbitrary file deletion vulnerability in End-User Notifications Endpoint Tools.
Tanium addressed an arbitrary file deletion vulnerability in Tanium EUSS.
Tanium addressed an arbitrary file deletion vulnerability in end-user-cx.
RustDesk Client for Windows Transfer File Link Following Information Disclosure Vulnerability. This vulnerability allows
OpenClaw versions prior to 2026.2.22 contain a symlink traversal vulnerability in avatar handling that allows attackers
This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 1
This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Sequ
Improper link resolution before file access ('link following') in Universal Plug and Play (upnp.dll) allows an authorize
A vulnerability in the CLI of Cisco ThousandEyes Enterprise Agent could allow an authenticated, local attacker with low
BentoML is a Python library for building online serving systems optimized for AI apps and model inference. In versions 1
FastNetMon Community Edition through 1.2.9 is vulnerable to a local symlink attack via predictable file paths in /tmp. T
This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.4. An app may be ab
NanoClaw before 2.1.17 contains a symlink following vulnerability in forwardAttachedFiles that allows container-controll
Hugo is a static site generator. From 0.123.0 to 0.161.1, a regression made RootMappingFs.statRoot use Stat (follows
ChatterBot is a machine learning, conversational dialog engine for creating chat bots. Prior to 1.2.14, UbuntuCorpusTrai
decompress before 4.2.2 allows arbitrary hardlink creation during archive extraction, enabling file read disclosure and
AnyDesk Screen Recording Link Following Denial-of-Service Vulnerability. This vulnerability allows local attackers to cr
AnyDesk Support Information Link Following Denial-of-Service Vulnerability. This vulnerability allows local attackers to
Improper link resolution before file access ('link following') in Universal Plug and Play (upnp.dll) allows an authorize
Network-AI is a TypeScript/Node.js multi-agent orchestrator. Prior to version 5.12.2, `EnvironmentManager.backup()` recu
Data::RoaringBitmap::Shared versions before 0.02 for Perl create a world-readable mmap backing file and open it without
This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 1
Local unprivileged users can terminate arbitrary local processes via a systemd-oomd IPC API due to a missing path traver
Improper link resolution before file access ('link following') in Windows Management Services allows an authorized attac
Improper link resolution before file access ('link following') in Windows Container Isolation FS Filter Driver (unionfs.
filelock is a platform-independent file lock for Python. Prior to version 3.20.3, a TOCTOU race condition vulnerability
OpenClaw versions prior to 2026.3.2 contain a path-confinement bypass vulnerability in browser output handling that allo
The Claude SDK for Python provides access to the Claude API from Python applications. From version 0.86.0 to before vers
A vulnerability in the tail utility of uutils coreutils allows for the exfiltration of sensitive file contents when usin
The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp").
An issue was discovered in the Portrait Dell Color Management application before 3.7.0 for Dell monitors. On Windows, a
pydantic-settings provides settings management using Pydantic. From 2.12.0 until 2.14.2, NestedSecretsSettingsSource rea
A vulnerability was detected in mosaxiv clawlet up to 0.2.10. This impacts the function read_file/write_file/edit_file o
A vulnerability was found in AstrBotDevs AstrBot up to 4.25.5. Impacted is the function _normalize_rw_path of the file a
gix-worktree-state before 0.33.0 (part of gitoxide) allows writing files outside the worktree on Windows. gix_worktree_s
Frequently Asked Questions
What is CWE-59?
CWE-59 (CWE-59) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-59?
There are 1,879 CVE records associated with CWE-59 in our database. Of these, 45 are critical severity, 691 are high severity, and 425 are medium severity.
How can I protect against CWE-59 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-59 using AI-powered security agents.
Detect CWE-59 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-59 vulnerabilities across your infrastructure.
Get Started