CVE-2026-28208
Junrar has arbitrary file write due to backslash path traversal bypass in LocalFolderExtractor on Linux/Unix
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
Junrar is an open source java RAR archive library. Prior to version 7.5.8, a backslash path traversal vulnerability in `LocalFolderExtractor` allows an attacker to write arbitrary files with attacker-controlled content anywhere on the filesystem when a crafted RAR archive is extracted on Linux/Unix. This can often lead to remote code execution (e.g., overwriting shell profiles, source code, cron jobs, etc). Version 7.5.8 has a fix for the issue.
Junrar es una biblioteca de archivo RAR de Java de código abierto. Antes de la versión 7.5.8, una vulnerabilidad de salto de ruta con barra invertida en 'LocalFolderExtractor' permite a un atacante escribir archivos arbitrarios con contenido controlado por el atacante en cualquier lugar del sistema de archivos cuando se extrae un archivo RAR manipulado en Linux/Unix. Esto a menudo puede conducir a la ejecución remota de código (por ejemplo, sobrescribiendo perfiles de shell, código fuente, tareas cron, etc.). La versión 7.5.8 tiene una solución para el problema.
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2026-02-25 CVE Reserved
- 2026-02-26 CVE Published
- 2026-03-02 CVE Updated
- 2026-03-02 First Exploit
- 2026-04-09 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CAPEC
References (3)
| URL | Tag | Source |
|---|---|---|
| https://github.com/junrar/junrar/releases/tag/v7.5.8 | Product |
| URL | Date | SRC |
|---|---|---|
| https://github.com/junrar/junrar/security/advisories/GHSA-j273-m5qq-6825 | 2026-03-02 |
| URL | Date | SRC |
|---|---|---|
| https://github.com/junrar/junrar/commit/947ff1d33f00f940aa68ae2593500291d799d954 | 2026-03-02 |
| URL | Date | SRC |
|---|
Affected Vendors, Products, and Versions
| Vendor | Product | Version | Other | Status | ||||||
|---|---|---|---|---|---|---|---|---|---|---|
| Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
| Junrar Project Search vendor "Junrar Project" | Junrar Search vendor "Junrar Project" for product "Junrar" | < 7.5.8 Search vendor "Junrar Project" for product "Junrar" and version " < 7.5.8" | - |
Affected
| ||||||
