CVE-2026-23879Disclosure

LOW

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

0.5/ 10 priority

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • Peaked 1d ago at 1 mentions (2026-06-19); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-06-19: 1Mentions · 2026-06-25: 1Patch / Workaround · 2026-06-25: 1Technical Details · 2026-06-19: 1Technical Details · 2026-06-25: 106-1906-25
Signal classification1 categories
Disclosure
2100.0%
Referenced assets2 URLs
Full discourse2 posts
  • Hugo | DevOps | Cybersecurity 🇱🇻@HugoValters
    Disclosure

    #CVE-2026-23879 - Critical RCE in Py7zr. #Arbitrary file write via symbolic link chains allows escape from destination directory. #CVSS 8.0. No patch available. Update or avoid extraction of untrusted #7z archives. #CVEAlert #infosec #Python More detailed FREE info: https://www.valtersit.com/cve/CVE-2026-23879

    Post summary

    The post announces a critical RCE vulnerability in Py7zr, describes the exploit path via symbolic link chains, offers a CVSS score, and recommends avoiding extraction of untrusted 7z archives as a workaround.

    0000067
    965 followersView on X
  • DailyCVE@dailycve
    Disclosure

    🔴 py7zr, Arbitrary File Write via Symlink Chain Traversal, #CVE-2026-23879 (High) -DC-Jun2026-490 https://dailycve.com/py7zr-arbitrary-file-write-via-symlink-chain-traversal-cve-2026-23879-high-dc-jun2026-490/

    Post summary

    Py7zr has a newly disclosed arbitrary file write vulnerability (CVE-2026-23879) identified by symlink chain traversal, marked as High severity.

    0000034
    213 followersView on X

Explore more