<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://exploit-radar.com/en/flux/marques/rarlab.xml</id>
  <title>Exploit Radar: exploited RARLAB vulnerabilities</title>
  <subtitle>The latest additions to CISA’s catalog of exploited vulnerabilities for RARLAB products.</subtitle>
  <link rel="self" type="application/atom+xml" href="https://exploit-radar.com/en/flux/marques/rarlab.xml"/>
  <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/marques/rarlab/"/>
  <updated>2025-12-09T00:00:00Z</updated>
  <author><name>Exploit Radar</name></author>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-6218/</id>
    <title>CVE-2025-6218 — RARLAB WinRAR</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-6218/"/>
    <updated>2025-12-09T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from RARLAB; if none are available, stop using the product. For cloud services, follow the guidance from RARLAB. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on December 9, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-8088/</id>
    <title>CVE-2025-8088 — RARLAB WinRAR</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-8088/"/>
    <updated>2025-08-12T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from RARLAB; if none are available, stop using the product. For cloud services, follow the guidance from RARLAB. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on August 12, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-38831/</id>
    <title>CVE-2023-38831 — RARLAB WinRAR</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-38831/"/>
    <updated>2023-08-24T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from RARLAB; if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on August 24, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-30333/</id>
    <title>CVE-2022-30333 — RARLAB UnRAR</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-30333/"/>
    <updated>2022-08-09T00:00:00Z</updated>
    <summary type="text">Apply the security update from RARLAB. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on August 9, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2018-20250/</id>
    <title>CVE-2018-20250 — RARLAB WinRAR</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2018-20250/"/>
    <updated>2022-02-15T00:00:00Z</updated>
    <summary type="text">Apply the security update from RARLAB. CISA deadline: 181 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on February 15, 2022.</summary>
  </entry>
</feed>
