PeaZip / PeaZip
3 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-105050 | PeaZip before 11.3.0, in a non-default configuration, is vulnerable to OS command injection via a filename in an archive because "quotation character already u… | HIGH | 7.1 | Oct 2, 2026 |
| CVE-2026-102514 | Out-of-bounds write in PeaZip PEA extractor allows code execution via a crafted .pea archive | HIGH | 8.4 | Oct 1, 2026 |
| CVE-2025-33026 | In PeaZip through 10.4.0, there is a Mark-of-the-Web Bypass Vulnerability. This vulnerability allows attackers to bypass the Mark-of-the-Web protection mechani… | HIGH | 7.8 | Apr 15, 2025 |
| CVE-2023-6891 | PeaZip Library dragdropfilesdll.dll uncontrolled search path | HIGH | 7.8 | Dec 17, 2023 |
| CVE-2023-24785 | An issue in Giorgio Tani peazip v.9.0.0 allows attackers to cause a denial of service via the End of Archive tag function of the peazip/pea UNPEA feature. | MEDIUM | 5.5 | Feb 17, 2023 |
Showing 1 to 3 of 3 CVEs