Known vulnerabilities in WinRAR 6.22 beta 1
Vendor:
RARLAB
Software:
WinRAR
Version:
6.22 beta 1
Software CPE:
cpe:2.3:a:rarlab:winrar:*:*:*:*:*:*:*:*
Website:
https://www.rarlab.com/
Total vulnerabilities:
6
Public exploits:
2
Known exploited (KEV):
2
Highest CVSSv4 Score:
8.7
Vulnerabilities by Severity
7.23
7.22
7.21
7.21 beta 1
7.20
7.20 beta 3
7.20 beta 2
7.20 beta 1
7.13
7.13 beta 1
7.12 beta 1
7.11
7.11 beta 1
7.10
7.10 beta 3
7.10 beta 2
7.01
7.10 beta 1
7.01 beta 1
7.00
7.00 beta 4
7.00 beta 3
7.00 beta 2
7.00 beta 1
6.24
6.24 beta 1
6.23
6.23 beta 1
6.22
6.22 beta 1
6.21
6.21 beta 1
6.20
6.20 beta 3
6.20 beta 2
6.20 beta 1
6.11.0.0
6.11
6.11 beta 1
6.10
6.10 beta 3
6.10 beta 2
6.10 beta 1
6.02
6.01
6.01 beta 1
6.00
5.91
5.90
5.90 beta 3
5.90 beta 2
5.90 beta 1
5.80
5.80 beta 4
5.80 beta 3
5.71
3.20
5.70 beta 2
5.70 beta 1
5.61
5.60
5.50
5.40
5.31
5.30
5.21
5.20
5.11
5.10
5.01
5.00
4.20
4.11
4.10
4.01
4.00
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU113784 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2025-8088 |
CWE-22 | Critical | 7.13 | 09.08.2025 |
SB2025080901 SB2025100738 SB2026080781 |
||
| #VU106931 - Product UI does not Warn User of Unsafe Actions CVE-2025-31334 |
CWE-356 | Medium | 7.11 | 03.04.2025 |
SB2025040328 |
||
| #VU92078 - Improper input validation CVE-2024–36052 |
CWE-20 | Low | 7.00 | 13.06.2024 |
SB2024040145 SB2024061396 |
||
| #VU87965 - Security Features CVE-2024-30370 |
CWE-254 | Medium | 7.00 | 01.04.2024 |
SB2024040145 |
||
| #VU79925 - Improper input validation CVE-2023-38831 |
CWE-20 | Critical | 6.23 | 23.08.2023 |
SB2023082350 |
||
| #VU79711 - Improper Validation of Array Index CVE-2023-40477 |
CWE-129 | High | 6.23 | 19.08.2023 |
SB2023081901 SB2023083134 SB2023083135 and 11 more |