← Back
CWE-59

1,501 CVEs • Abstraction: Base • Likelihood of Exploit: Medium

Improper Link Resolution Before File Access ('Link Following')

The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.

JSON object

Loading...

CVEs (1,501)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Freebsd
1Freebsd
Apr 16, 2026
Jun 16, 1998
N/A· v4
5.5 MEDIUM· v3
5.0 MEDIUM· v2
FreeBSD allows local users to conduct a denial of service by creating a hard link from a device special file to a file on an NFS file system.