PT-2026-93919 · Junrar · Junrar

CVE-2026-86071

·

Published

2026-09-16

·

Updated

2026-09-17

CVSS v3.1

3.7

Low

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Junrar versions prior to 7.6.1
Description An extraction root escape exists when processing crafted archive entries. The createFile() function validates only the final canonical file path, but the makeFile() function creates intermediate path segments using unchecked mkdir() calls. This allows a malicious entry to ensure the final path resolves inside the destination while creating intermediate directories outside the intended extraction root. This can lead to filesystem pollution or file-versus-directory squatting, where a directory is created at a path where a security-sensitive file is expected, causing subsequent writes to fail. The impact is limited to directory creation rather than arbitrary file-content writes.
Recommendations Update Junrar to version 7.6.1.

Exploit

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-86071
ECHO-3DD8-1D6E-83C7
GHSA-89M4-43J5-VHHX

Affected Products

Junrar