<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>WildforTech Security Advisories — RARLAB</title><description>Actively exploited vulnerabilities affecting RARLAB products.</description><link>https://wildfortech.com</link><atom:link href="https://wildfortech.com/security/vendor/rarlab.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2025-6218 — RARLAB WinRAR Path Traversal Vulnerability</title><link>https://wildfortech.com/security#CVE-2025-6218</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2025-6218</guid><description>WinRAR, a widely used archive utility, contains a path traversal flaw that lets an attacker manipulate file extraction paths to place malicious files in unintended locations, ultimately executing arbitrary code under the logged-in user&apos;s account. Because WinRAR is installed on millions of Windows systems and is routinely used to open untrusted archive files, a crafted archive sent via email or downloaded from the web could silently compromise a machine without any obvious warning to the user.</description><pubDate>Tue, 09 Dec 2025 00:00:00 GMT</pubDate><category>RARLAB</category><category>WinRAR</category></item><item><title>CVE-2025-8088 — RARLAB WinRAR Path Traversal Vulnerability</title><link>https://wildfortech.com/security#CVE-2025-8088</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2025-8088</guid><description>WinRAR, one of the most widely used archive utilities on Windows, contains a path traversal flaw that lets attackers craft malicious archive files capable of executing arbitrary code when opened. This vulnerability is already being exploited in ransomware campaigns, meaning real-world attackers are actively weaponizing it against organizations. Any user or system that opens a booby-trapped archive could trigger a full compromise without any other interaction required.</description><pubDate>Tue, 12 Aug 2025 00:00:00 GMT</pubDate><category>RARLAB</category><category>WinRAR</category></item></channel></rss>