CVE-2025-8088: RARLAB WinRAR Path Traversal Vulnerability. RARLAB WinRAR
RARLAB WinRAR Path Traversal Vulnerability. RARLAB WinRAR contains a path traversal vulnerability affecting the Windows version of WinRAR. This vulnerability could allow an attacker to execute arbitrary code by crafting malicious archive files.
- CISA KEV-listed (remediation due 2025-09-02)
- used in ransomware campaigns
- EPSS 94.6% (99.8% percentile)
- CVSS 8.4 high
Detection rules
Related briefings
- Russia's Gamaredon hides Ukraine spying behind everyday web services 2026-06-26
- Russia's FSB-linked Turla hits Ukraine with a stealthy new backdoor 2026-06-25
- Russia-aligned hackers keep hitting Ukraine through an old WinRAR bug 2026-06-09
- Russian FSB Hackers Hit Ukraine With a Self-Reinstalling Malware Chain 2026-06-06
Linked threat actors
- Gamaredon Group machine-inferred link
- Amaranth-Dragon machine-inferred link
- Turla machine-inferred link
- RomCom
- Sandworm Team machine-inferred link