CVE-2026-481017-zip · 7-zip
Vulnerability data via NVD (ingested)
7-Zip is a file archiver with a high compression ratio. Versions 9.21 through 26.00 contain an An uninitialized memory disclosure vulnerability in the UEFI capsule (.scap) parser in 7-Zip. The OpenCapsule function allocates a heap buffer of attacker-declared CapsuleImageSize (up to 1 GiB) without zero-initialization, then reads the file contents into it with ReadStream_FALSE whose return value is silently discarded. If the file is truncated, the unread tail of the buffer retains uninitialized heap memory, which is then exposed as extracted file content via GetStream. Version 26.0.1 fixes the issue.
External references
Search for exposed instances
Shodan + Censys queries derived from NVD's CPE data. The vuln tag catches assets Shodan has explicitly linked to this CVE; the product / banner fingerprints find exposed instances even when the vuln tag was never applied (which is common).
vuln:CVE-2026-48101product:"7-zip 7-zip"http.html:"7-zip"More intel sources (5)
vuln:CVE-2026-48101vulnerabilities.cve_id: CVE-2026-48101CVE-2026-48101CVE-2026-48101"CVE-2026-48101" exploit -site:nvd.nist.gov