Skip to main content

Actively exploited

Listed in CISA’s Known Exploited Vulnerabilities catalog since August 12, 2025.

Known ransomware use

CVE-2025-8088

RARLAB WinRAR Path Traversal Vulnerability

RARLAB · WinRAR

Added to KEV August 12, 2025

Alert details

Source feed
CISA KEV
CVE ID
CVE-2025-8088
CWE
CWE-35
Affected products
WinRAR · RARLAB WinRAR · RARLAB

What happened

RARLAB WinRAR contains a path traversal vulnerability affecting the Windows version of WinRAR. This vulnerability could allow an attacker to execute arbitrary code by crafting malicious archive files.

What it means for your business

RARLAB WinRAR is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2025-8088). RARLAB WinRAR contains a path traversal vulnerability affecting the Windows version of WinRAR. This vulnerability could allow an attacker to execute arbitrary code by crafting malicious archive files. CISA remediation due date: 2025-09-02. If you need help checking exposure, call (864) 335-9223.

Required action

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

CISA due date: September 2, 2025

Sources

Related briefs

HighMicrosoft MSRC

CVE-2026-76023

Linux Toolkit Theming vulnerability

Linux Toolkit Theming vulnerability (CVE-2026-76023) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-85892

Microsoft Edge (Chromium-based) Elevation of Privilege vulnerability

Microsoft Edge (Chromium-based) Elevation of Privilege vulnerability (CVE-2026-85892) was added to Microsoft’s security update guidance. <p>Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Edge (Chromium-based) allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.

Actively exploited (KEV)

CVE-2026-84869

ConnectWise ScreenConnect Improper Privilege Management and Missing Authorization Vulnerability

ConnectWise ScreenConnect is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2026-84869). ConnectWise ScreenConnect contains both an improper privilege management and missing authorization vulnerability that may allow an attacker to file transfer and execution through an active remote sessions without authorization or host confirmation. CISA remediation due date: 2026-09-14. If you need help checking exposure, call (864) 335-9223.

CriticalMicrosoft MSRC

CVE-2026-84352

Use after free in WebGL in Microsoft Edge vulnerability

Use after free in WebGL in Microsoft Edge vulnerability (CVE-2026-84352) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Need help patching?

PremierePC monitors KEV alerts for managed clients and helps teams prioritize remediation before attackers do.