<?xml version='1.0' encoding='utf-8'?>
<rss version="2.0"><channel><title>Cybersecurity Tracker: 7-Zip Watch</title><link>https://cybersecuritytracker.ai/?stack=1</link><description>Stories and vulnerabilities involving 7-Zip.</description><lastBuildDate>Sun, 26 Jul 2026 22:32:53 GMT</lastBuildDate><item><title>Mitsubishi Electric MELSOFT Update Manager SW1DND-UDM-M</title><link>https://cisa.gov/news-events/ics-advisories/icsa-26-181-01</link><guid isPermaLink="false">cst-263</guid><description>Mitsubishi Electric MELSOFT Update Manager SW1DND-UDM-M versions 1.000A through 1.014Q contain four vulnerabilities in the bundled 7-Zip component, including heap-based buffer overflow, NULL pointer dereference, link following, and path traversal flaws. These issues could allow local attackers to cause denial-of-service conditions, tamper with data, or execute arbitrary code when a user decompresses a specially crafted archive file. Mitsubishi Electric has released fixed version 1.015R or later, and recommends network segmentation and access controls for users unable to update immediately.</description><pubDate>Tue, 30 Jun 2026 12:00:00 GMT</pubDate></item></channel></rss>