CVE-2022-21132: Pfsense Pfsense-Pkg-Wireguard

Medium severity, CVSS 6.5. EPSS: 1.8% chance of exploitation in the next 30 days.

Directory traversal vulnerability in pfSense-pkg-WireGuard pfSense-pkg-WireGuard 0.1.5 versions prior to 0.1.5_4 and pfSense-pkg-WireGuard 0.1.6 versions prior to 0.1.6_1 allows a remote authenticated attacker to lead a pfSense user to view a file outside the public folder.

Affected products

  • Pfsense Pfsense-Pkg-Wireguard: from 0.1.5, before 0.1.5_4 (fixed in 0.1.5_4); version 0.1.6 only

Published 2022-03-10. Last modified 2026-06-17.