1. Home
  2. Blog
  3. Path-traversal

Path-traversal

3 posts tagged with “Path-traversal”

CVE-2026-33922: Nozomi Arc Path Traversal Lets Admins Delete Arbitrary Files on OT Security Appliances
cvesecurityvulnerability

CVE-2026-33922: Nozomi Arc Path Traversal Lets Admins Delete Arbitrary Files on OT Security Appliances

A path traversal vulnerability in Nozomi Arc before v2.7.0 lets local web interface administrators delete arbitrary files by submitting crafted archive names in the Offline archives feature. Fixed in version 2.7.0.

Aug 11, 2026
Read
CVE-2026-13716: Path Traversal in Crafty Controller Enables Remote Code Execution
cvesecurityvulnerability

CVE-2026-13716: Path Traversal in Crafty Controller Enables Remote Code Execution

Critical path traversal (CVSS 9.1) in Crafty Controller's server import and admin file upload lets a remote authenticated attacker write files to arbitrary paths and achieve remote code execution. No fix available yet.

Aug 11, 2026
Read
CVE-2026-69112: Hugging Face Accelerate Path Traversal Lets Attackers Read Arbitrary Files
cvesecurityvulnerability

CVE-2026-69112: Hugging Face Accelerate Path Traversal Lets Attackers Read Arbitrary Files

Hugging Face Accelerate through 1.14.0 fails to sanitize weight_map entries in sharded checkpoint indexes, allowing arbitrary file reads and denial of service via named pipes. Affects 27M monthly downloads.

Aug 11, 2026
Read
  1. Home
  2. Blog
  3. Path-traversal

Path-traversal

3 posts tagged with “Path-traversal”

CVE-2026-33922: Nozomi Arc Path Traversal Lets Admins Delete Arbitrary Files on OT Security Appliances
cvesecurityvulnerability

CVE-2026-33922: Nozomi Arc Path Traversal Lets Admins Delete Arbitrary Files on OT Security Appliances

A path traversal vulnerability in Nozomi Arc before v2.7.0 lets local web interface administrators delete arbitrary files by submitting crafted archive names in the Offline archives feature. Fixed in version 2.7.0.

Aug 11, 2026
Read
CVE-2026-13716: Path Traversal in Crafty Controller Enables Remote Code Execution
cvesecurityvulnerability

CVE-2026-13716: Path Traversal in Crafty Controller Enables Remote Code Execution

Critical path traversal (CVSS 9.1) in Crafty Controller's server import and admin file upload lets a remote authenticated attacker write files to arbitrary paths and achieve remote code execution. No fix available yet.

Aug 11, 2026
Read
CVE-2026-69112: Hugging Face Accelerate Path Traversal Lets Attackers Read Arbitrary Files
cvesecurityvulnerability

CVE-2026-69112: Hugging Face Accelerate Path Traversal Lets Attackers Read Arbitrary Files

Hugging Face Accelerate through 1.14.0 fails to sanitize weight_map entries in sharded checkpoint indexes, allowing arbitrary file reads and denial of service via named pipes. Affects 27M monthly downloads.

Aug 11, 2026
Read
HOL LogoHOL
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

HOL LogoHOL
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.