RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files during an extract (aka unpack) operation, as demonstrated by creating a ~/.ssh/authorized_keys file. NOTE: WinRAR and Android RAR are unaffected.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-30333.json"
[ { "events": [ { "introduced": "0" }, { "fixed": "6.12" } ] }, { "events": [ { "introduced": "0" }, { "last_affected": "10.0" } ] } ]