Peazip Project maintains a focused, open-source file-archiving utility with a narrowly scoped vulnerability footprint concentrated in its single flagship product. The recurring weakness pattern centers on resource-allocation handling, particularly conditions where the application may fail to impose limits or throttling on operations, a structural concern common to archive-processing tools handling untrusted input. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Peazip Project over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-33026HIGH In PeaZip through 10.4.0, there is a Mark-of-the-Web Bypass Vulnerability. This vulnerability allows attackers to bypass the Mark-of-the-Web protection mechanism on affected instal | Apr 15, 2025 | 7.8 | 22 | NO | NO |
CVE-2023-6891HIGH A vulnerability has been found in PeaZip 9.4.0 and classified as problematic. Affected by this vulnerability is an unknown functionality in the library dragdropfilesdll.dll of the | Dec 17, 2023 | 7.8 | 22 | NO | NO |
CVE-2023-24785MEDIUM An issue in Giorgio Tani peazip v.9.0.0 allows attackers to cause a denial of service via the End of Archive tag function of the peazip/pea UNPEA feature. | Feb 17, 2023 | 5.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Peazip Project.
Media articles that mention a CVE ID that affects a product developed by Peazip Project — matched by CVE ID, not by vendor name.