Known Vulnerabilities for Unzip by Unzip Project
Listed below are 10 of the newest known vulnerabilities associated with "Unzip" by "Unzip Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-78638 json | A flaw has been found in peerigon unzip-crx and unzip-crx-3 up to 0.2.0. This affects the function unzip of the file dist/ind... | Not Provided | 2026-08-25 | 2026-08-27 |
| CVE-2026-72819 json | Grav CMS before 2.0.13 contains a remote code execution vulnerability in the Flex Objects plugin settings validation that all... | Not Provided | 2026-08-14 | 2026-08-14 |
| CVE-2026-68924 json | MobSF is a mobile application security testing tool used. Prior to 4.5.1, the unzip function in mobsf/StaticAnalyzer/views/co... | Not Provided | 2026-08-18 | 2026-08-18 |
| CVE-2026-59803 json | rpcx through 1.9.3, fixed in commit 047aec1, contains a denial-of-service vulnerability in protocol.Message.Decode (protocol/... | Not Provided | 2026-07-08 | 2026-07-09 |
| CVE-2026-59311 json | A local unprivileged user on the same host can redirect all Zip/UnZip transformer output into a directory of their choosing b... | Not Provided | 2026-08-27 | 2026-08-28 |
| CVE-2026-59193 json | Grav is a file-based Web platform. Prior to 2.0.0, an authenticated admin.super user can crash Grav or fill the disk by uploa... | Not Provided | 2026-07-10 | 2026-07-10 |
| CVE-2026-57863 json | Crater Invoice through 6.0.6 contains a path traversal vulnerability in the self-update API that allows authenticated company... | Not Provided | 2026-08-25 | 2026-08-25 |
| CVE-2026-47078 json | Relative Path Traversal vulnerability in Erlang OTP (stdlib zip module) allows writing files outside the intended extraction ... | Not Provided | 2026-07-27 | 2026-07-28 |
| CVE-2026-13723 json | A vulnerability in the `zipx.Unzip` extraction routine of Develar's app-builder allows an attacker to overwrite arbitrary fil... | Not Provided | 2026-07-29 | 2026-07-29 |
| CVE-2025-4748 json | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Erlang OTP (stdlib modules) a... | Not Provided | 2025-06-16 | 2026-07-24 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Unzip Project | Unzip | 6.0 | |||
| Application | Unzip Project | Unzip | 5.52 | |||
| Application | Unzip Project | Unzip | 5.51 |