CVE-2023-22899

5.9MEDIUM

Zip4j through 2.11.2, as used in Threema and other products, does not always check the MAC when decrypting a ZIP archive.

Publicado: 1/10/2023Atualizado: 4/9/2025

Descrição

Zip4j through 2.11.2, as used in Threema and other products, does not always check the MAC when decrypting a ZIP archive.

Análise IADesenvolvido por IA

Produtos Afetados

zip4j_projectzip4j

Referências