Skip to content

CVE-2026-14266

CVE

Threat entity extracted from intelligence sources

Frequency
6
occurrences
First Seen
July 17, 2026
Last Seen
August 5, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Debian has released updates addressing critical vulnerabilities in p7zip and 7zip, which could allow remote code execution. The vulnerabilities include CVE-2026-14266, a heap-based buffer overflow in XZ decompression, and CVE-2026-58052, an issue with RAR5 alternate-stream handling on NTFS filesyste...

A newly disclosed vulnerability in 7-Zip, tracked as CVE-2026-14266, enables remote code execution via a heap-based buffer overflow when processing crafted XZ chunked data. Attackers can exploit this flaw by tricking users into opening malicious files or visiting compromised websites. The vulnerabil...

Public Exploits

Checking GitHub for proof-of-concept code…