CVE-2023-22899

5.9MEDIUM

Zip4j through 2.11.2, as used in Threema and other products, does not always check the MAC when decrypting a ZIP archive.

Veröffentlicht: 1/10/2023Aktualisiert: 4/9/2025

Beschreibung

Zip4j through 2.11.2, as used in Threema and other products, does not always check the MAC when decrypting a ZIP archive.

KI-AnalyseKI-gestützt

Betroffene Produkte

zip4j_projectzip4j

Referenzen