WhisperX tag archive

#Directory Traversal

This page collects WhisperX intelligence signals tagged #Directory Traversal. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (4)

The Lab · 2026-03-27 03:27:02 · GitHub Issues

1. CVE-2025-67030: Critical Directory Traversal Flaw in Plexus-Utils Library Exposes Systems to Arbitrary Code Execution

A critical vulnerability in a widely used Java library allows attackers to execute arbitrary code on affected systems. The flaw, tracked as CVE-2025-67030, is a Directory Traversal vulnerability in the `extractFile` method of `org.codehaus.plexus.util.Expand` within the `plexus-utils` library. This vulnerability enable...

The Lab · 2026-04-07 09:26:58 · GitHub Issues

2. GitHub Security Alert: Unauthorized Directory Traversal Attempt on API Endpoint

A high-severity security incident has been flagged after an unauthorized user attempted to access sensitive system files. The threat actor exploited a directory traversal vulnerability in an API endpoint, a technique that can allow access to restricted directories and files. While the server blocked the attempt with a ...

The Lab · 2026-04-07 09:26:59 · GitHub Issues

3. GitHub Security Alert: Unauthorized Directory Traversal Attempt on API Endpoint

A high-severity security incident has been logged, involving an unauthorized user attempting to access sensitive system files. The threat actor exploited a directory traversal vulnerability in a specific API endpoint, a technique used to navigate outside the intended directory structure to reach protected files. While ...

The Lab · 2026-04-19 13:22:36 · GitHub Issues

4. GitHub Security Alert: Batch JSON Output Paths Vulnerable to Directory Traversal, Arbitrary File Write

A critical security vulnerability has been identified in a codebase, exposing a direct path to arbitrary filesystem writes. The flaw, designated as a P0 (Fix Now) priority, resides in the handling of batch JSON output fields. These fields are being used directly as file paths without any validation, creating a wide-ope...