CVE-2026-87794 | nfriedly bestzip up to 2.2.6/3.0.2 Info-ZIP backend nativeZip argument injection

SecurityVulns

A vulnerability, which was classified as critical, was found in nfriedly bestzip up to 2.2.6/3.0.2. Impacted is the function nativeZip of the component Info-ZIP backend. Such manipulation leads to argument injection.

This vulnerability is listed as CVE-2026-87794. The attack may be performed from remote. There is no available exploit.

You should upgrade the affected component.VulDB Recent EntriesRead More