CVE-2023-38831CISA KEVEPSS p100.0%

CVE-2023-38831RARLAB WinRAR Code Execution Vulnerability

RARLAB / WinRAR

Description

RARLAB WinRAR contains an unspecified vulnerability that allows an attacker to execute code when a user attempts to view a benign file within a ZIP archive.

Scoring

CVSS 7.8 ()
VectorCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS99.81% probability of exploitation · percentile 100.0% · 2026-10-04T12:00:21Z
Last modified2026-08-05

CISA KEV entry

Added to KEV: 2023-08-24

(incoming)1

TypeTargetConfidenceTier
KEVEntryRARLAB WinRAR Code Execution Vulnerabilitykev-cve-2023-388310%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
RARLAB WinRAR Path Traversal Vulnerability
CVE
RARLAB UnRAR Directory Traversal Vulnerability
CVE
WinRAR Absolute Path Traversal Vulnerability
CVE
CVE-2026-4424
CVE
CVE-2025-14111
CVE
Microsoft Windows Runtime Remote Code Execution Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.