CVE-2026-86071 | Junrar up to 7.6.0 LocalFolderExtractor LocalFolderExtractor.java LocalFolderExtractor.makeFile path traversal

SecurityVulns

A vulnerability was found in Junrar up to 7.6.0. It has been classified as problematic. This affects the function LocalFolderExtractor.makeFile of the file src/main/java/com/github/junrar/LocalFolderExtractor.java of the component LocalFolderExtractor. Performing a manipulation results in path traversal.

This vulnerability is cataloged as CVE-2026-86071. It is possible to initiate the attack remotely. There is no exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More