Known vulnerabilities in WinRAR 7.10 beta 1

Vendor: RARLAB
Software: WinRAR
Version: 7.10 beta 1
Software CPE: cpe:2.3:a:rarlab:winrar:*:*:*:*:*:*:*:*
Total vulnerabilities: 5
Public exploits: 1
Known exploited (KEV): 2
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting WinRAR version 7.10 beta 1 WinRAR 7.10 beta 1 is affected by 5 vulnerabilities: 1 critical, 2 high, 2 medium Critical High Medium Low

Vulnerabilities (5)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU136808 - Heap-based Buffer Overflow
CVE-2026-14191
CWE-122 High
No
No
7.23 02.07.2026 SB2026070288
#VU136809 - Improper Link Resolution Before File Access ('Link Following')
CWE-59 Medium
No
No
7.23 02.07.2026 SB2026070288
#VU113784 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-8088
CWE-22 Critical
Public exploit available
Exploited
7.13 09.08.2025 SB2025080901
SB2025100738
SB2026080781
#VU111537 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-6218
CWE-22 High
Public exploit available
Exploited
7.11 20.06.2025 SB2025062012
#VU106931 - Product UI does not Warn User of Unsafe Actions
CVE-2025-31334
CWE-356 Medium
No
No
7.11 03.04.2025 SB2025040328