Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

redhat логотип

CVE-2026-41245

4 месяца назад

Junrar is an open source java RAR archive library. Prior to version 7.5.10, a path traversal vulnerability in `LocalFolderExtractor` allows an attacker to write arbitrary files with attacker-controlled content into sibling directories when a crafted RAR archive is extracted. Version 7.5.10 fixes the issue.

CVSS3: 9.3
EPSS: Низкий
nvd логотип

CVE-2026-41245

4 месяца назад

Junrar is an open source java RAR archive library. Prior to version 7.5.10, a path traversal vulnerability in `LocalFolderExtractor` allows an attacker to write arbitrary files with attacker-controlled content into sibling directories when a crafted RAR archive is extracted. Version 7.5.10 fixes the issue.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-hf5p-q87m-crj7

4 месяца назад

Junrar: Path Traversal (Zip-Slip) via Sibling Directory Name Prefix

CVSS3: 5.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2026-41245

Junrar is an open source java RAR archive library. Prior to version 7.5.10, a path traversal vulnerability in `LocalFolderExtractor` allows an attacker to write arbitrary files with attacker-controlled content into sibling directories when a crafted RAR archive is extracted. Version 7.5.10 fixes the issue.

CVSS3: 9.3
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-41245

Junrar is an open source java RAR archive library. Prior to version 7.5.10, a path traversal vulnerability in `LocalFolderExtractor` allows an attacker to write arbitrary files with attacker-controlled content into sibling directories when a crafted RAR archive is extracted. Version 7.5.10 fixes the issue.

CVSS3: 5.9
0%
Низкий
4 месяца назад
github логотип
GHSA-hf5p-q87m-crj7

Junrar: Path Traversal (Zip-Slip) via Sibling Directory Name Prefix

CVSS3: 5.9
0%
Низкий
4 месяца назад

Уязвимостей на страницу