target entity

RARLAB

5 source-linked records in the current knowledge graph.

high

CVE-2025-6218: RARLAB WinRAR Path Traversal Vulnerability

RARLAB WinRAR contains a path traversal vulnerability allowing an attacker to execute code in the context of the current user. Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

CVE-2025-6218EPSS 86.2%RARLABWinRAR
CISA KEV ↗ · unattributed attribution
high

CVE-2025-8088: RARLAB WinRAR Path Traversal Vulnerability

RARLAB WinRAR contains a path traversal vulnerability affecting the Windows version of WinRAR. This vulnerability could allow an attacker to execute arbitrary code by crafting malicious archive files. Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

CVE-2025-8088EPSS 80.9%RARLABWinRAR
CISA KEV ↗ · unattributed attribution
high

CVE-2023-38831: RARLAB WinRAR Code Execution Vulnerability

RARLAB WinRAR contains an unspecified vulnerability that allows an attacker to execute code when a user attempts to view a benign file within a ZIP archive. Required action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

CVE-2023-38831EPSS 97.8%RARLABWinRAR
CISA KEV ↗ · unattributed attribution