Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2533▼ 405 respecto a la semana anterior
Críticas / altas1319▲ 38 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)99▼ 428 respecto a la semana anterior
–

24 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaBaja (3.7)0.36%—JunrarAI16/9/202624/9/2026
Junrar is an open source Java RAR archive library. Prior to version 7.6.1, LocalFolderExtractor in src/main/java/com/github/junrar/LocalFolderExtractor.java can create directories outside the intended extraction root when processing a crafted archive entry. LocalFolderExtractor.createFile() validates only the final…
AplazadaAlta (7.8)0.19%—IzarcAIRarlab UnrarAI22/7/20261/10/2026
An issue in the unrar.dll component of IZArc v4.6 allows attackers to execute a path traversal.
AplazadaAlta (7.8)0.44%—Rarlab WinrarAIRarlab UnrarAI1/7/20269/7/2026
An out-of-bounds heap write exists in the RAR5 recovery-volume (.rev) parser in WinRAR and UnRAR (RecVolumes5::ReadHeader in recvol5.cpp). The RecItems vector is sized only when the first .rev file in a set is processed; subsequent .rev files supply an independent RecNum value that is validated against that file's own…
ModificadaAlta (7.5)0.53%—Junrar Project Junrar20/4/202618/8/2026
Junrar is an open source java RAR archive library. Prior to version 7.5.10, a path traversal vulnerability in `LocalFolderExtractor` allows an attacker to write arbitrary files with attacker-controlled content into sibling directories when a crafted RAR archive is extracted. Version 7.5.10 fixes the issue.
ModificadaMedia (5.9)0.75%—Junrar Project Junrar26/2/202617/6/2026
Junrar is an open source java RAR archive library. Prior to version 7.5.8, a backslash path traversal vulnerability in `LocalFolderExtractor` allows an attacker to write arbitrary files with attacker-controlled content anywhere on the filesystem when a crafted RAR archive is extracted on Linux/Unix. This can often…
ModificadaAlta (7.5)0.84%—Rarlab Unrar7/8/202317/6/2026
UnRAR before 6.2.3 allows extraction of files outside of the destination folder via symlink chains.
AnalizadaAlta (7.5)99%⚠ Explotación activaRarlab UnrarDebian Linux9/5/20222/10/2026
RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files during an extract (aka unpack) operation, as demonstrated by creating a ~/.ssh/authorized_keys file. NOTE: WinRAR and Android RAR are unaffected.
ModificadaAlta (7.5)1.6%—Junrar Project Junrar1/2/202217/6/2026
Junrar is an open source java RAR archive library. In affected versions A carefully crafted RAR archive can trigger an infinite loop while extracting said archive. The impact depends solely on how the application uses the library, and whether files can be provided by malignant users. The problem is patched in 7.4.1.…
ModificadaAlta (7.8)1.3%—Rarlab Unrar1/7/202117/6/2026
UnRAR 5.6.1.7 through 5.7.4 and 6.0.3 has an out-of-bounds write during a memcpy in QuickOpen::ReadRaw when called from QuickOpen::ReadNext.
ModificadaAlta (7.8)1.2%—Rarlab Unrar1/7/202117/6/2026
UnRAR 5.6.1.2 and 5.6.1.3 has a heap-based buffer overflow in Unpack::CopyString (called from Unpack::Unpack5 and CmdExtract::ExtractCurrentFile).
ModificadaMedia (5.5)1.2%—Junrar Project Junrar14/6/201817/6/2026
Archive.java in Junrar before 1.0.1, as used in Apache Tika and other products, is affected by a denial of service vulnerability due to an infinite loop when handling corrupt RAR files.
ModificadaCrítica (9.1)1.8%—Rarlab UnrarDebian Linux3/9/201717/6/2026
unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a stack-based buffer over-read in unrarlib.c, related to ExtrFile and stricomp.
ModificadaMedia (5.5)1.1%—Rarlab UnrarDebian Linux3/9/201717/6/2026
The DecodeNumber function in unrarlib.c in unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a NULL pointer dereference flaw triggered by a crafted RAR archive. NOTE: this may be the same as one of the several test cases in the CVE-2017-11189 references.
ModificadaAlta (7.5)2.1%—Rarlab UnrarDebian Linux3/9/201717/6/2026
unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a directory traversal vulnerability for RAR v2 archives: pathnames of the form ../[filename] are unpacked into the upper directory.
ModificadaCrítica (9.8)2.3%—Rarlab Unrar18/8/201717/6/2026
libunrar.a in UnRAR before 5.5.7 has a buffer overflow in the Unpack::LongLZ function.
ModificadaCrítica (9.8)2.2%—Rarlab Unrar18/8/201717/6/2026
libunrar.a in UnRAR before 5.5.7 has an out-of-bounds read in the Unpack::Unpack20 function.
ModificadaCrítica (9.8)2.2%—Rarlab Unrar18/8/201717/6/2026
libunrar.a in UnRAR before 5.5.7 has an out-of-bounds read in the EncodeFileName::Decode call within the Archive::ReadHeader15 function.
ModificadaAlta (7.5)3.0%—Rarlab Unrar18/8/201717/6/2026
UnRAR before 5.5.7 allows remote attackers to bypass a directory-traversal protection mechanism via vectors involving a symlink to the . directory, a symlink to the .. directory, and a regular file.
ModificadaAlta (7.8)1.0%—Rarzilla Unrar-free12/7/201717/6/2026
unrarlib.c in unrar-free 0.0.1, when _DEBUG_LOG mode is enabled, might allow remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via an RAR archive containing a long filename.
ModificadaMedia (6.5)1.3%—Rarzilla Unrar-free12/7/201717/6/2026
unrarlib.c in unrar-free 0.0.1 might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash), which could be relevant if unrarlib is used as library code for a long-running application. NOTE: one of the several test cases in the references may be the same as what was…
ModificadaCrítica (9.8)10%—Sophos Threat Detection EngineRarlab Unrar22/6/201716/6/2026
A VMSF_DELTA memory corruption was discovered in unrar before 5.5.5, as used in Sophos Anti-Virus Threat Detection Engine before 3.37.2 and other products, that can lead to arbitrary code execution. An integer overflow can be caused in DataSize+CurChannel. The result is a negative value of the "DestPos" variable,…
ModificadaMedia (4.3)2.1%—Rarlab Unrar12/7/200716/6/2026
Integer signedness error in the SET_VALUE function in rarvm.cpp in unrar 3.70 beta 3, as used in products including WinRAR and RAR for OS X, allows user-assisted remote attackers to cause a denial of service (crash) via a crafted RAR archive that causes a negative signed number to be cast to a large unsigned number.
ModificadaAlta (10)3.4%—Christian Scheurer UnrarlibChristian Scheurer Urarfilelib14/3/200716/6/2026
Buffer overflow in the urarlib_get function in Christian Scheurer UniquE RAR File Library (unrarlib, aka URARFileLib) 0.4 allows context-dependent attackers to execute arbitrary code via a long (1) filename, (2) rarfile, or (3) libpassword argument.
ModificadaMedia (6.8)4.0%—Rarlab Unrar8/2/200716/6/2026
Stack-based buffer overflow in RARLabs Unrar, as packaged in WinRAR and possibly other products, allows user-assisted remote attackers to execute arbitrary code via a crafted, password-protected archive.