RARLAB WinRAR: known exploited vulnerabilities
Entries4
Ransomware-linked3
First added2022-02-15
Latest2025-12-09
EPSS compared
99.8%
96.0%
94.2%
90.4%
| CVE | Vendor / product | Added | EPSS | Ransomware |
|---|---|---|---|---|
| CVE-2025-6218 | RARLAB WinRAR | 2025-12-09 | 90.4% | Unknown |
| CVE-2025-8088 | RARLAB WinRAR | 2025-08-12 | 94.2% | Known |
| CVE-2023-38831 | RARLAB WinRAR | 2023-08-24 | 99.8% | Known |
| CVE-2018-20250 | RARLAB WinRAR | 2022-02-15 | 96.0% | Known |
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.