WinRAR
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 17 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from August 23, 2023 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →another WinRAR RCE today and it STILL has no auto-updater
WinRAR / UnRAR RAR5 recovery-volume (.rev) out-of-bounds heap write in RecVolumes5::ReadHeader
WinRAR path traversal flaw still exploited by numerous hackers
Qilin ransomware abuses WSL to run Linux encryptors in Windows
The WinRAR 0-day putting SOCs at risk
Russia's RomCom among those exploiting a WinRAR 0-day in highly-targeted attacks
Newly discovered WinRAR exploit linked to Russian hacking group, can plant backdoor malware — zero day hack requires manual update to fix | WinRAR flaw CVE-2025-8088 has been fixed in version 7.13.
WinRAR zero-day exploited to plant malware on archive extraction
WinRAR < 5.00 Filename Spoofing RCE
WinRAR patches bug letting malware launch from extracted archives
Monitor WinRAR in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.