PT-2026-48535 · Bit7Z · Bit7Z

CVE-2026-45384

·

Published

2026-06-10

·

Updated

2026-06-10

CVSS v3.1

6.1

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:L
Name of the Vulnerable Software and Affected Versions bit7z versions prior to 4.0.12
Description An arbitrary file overwrite issue exists during archive updates. This occurs due to a symlink attack targeting predictable temporary files. A symlink is a special type of file that serves as a reference to another file or directory.
Recommendations Update to version 4.0.12.

Exploit

Fix

Link Following

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-45384
GHSA-WJCH-42RM-Q53H

Affected Products

Bit7Z