Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

UPX — Vulnerabilities & Security Advisories 22

All 22 CVE vulnerabilities found in UPX, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumeration (CWE) vulnerabilities associated with the UPX (Ultimate Packer for eXecutables) product developed by Markus Oberhumer and the UPX team. It collects data regarding security flaws, misconfigurations, and coding errors that affect the integrity, confidentiality, or availability of applications packed or protected by this utility. The database covers vulnerabilities reported over the past decade, including those identified in older versions as well as recent releases, ensuring a comprehensive view of the product's historical security landscape. Users can track vendor advisories to stay informed about emerging threats and recommended patches for UPX. The page also allows researchers to understand specific weakness classes by examining how common design or implementation flaws manifest in packing tools. Additionally, users can look up a product's vulnerability history to analyze trends, such as whether certain types of issues recur across multiple versions or if security practices have improved over time. This resource supports security auditors, developers, and users in assessing the risk profile of UPX when integrating it into build pipelines or deployment workflows. By providing structured access to past and present findings, the page facilitates informed decision-making regarding the adoption and configuration of the tool. It does not offer real-time monitoring but serves as a static reference for historical analysis and due diligence in software supply chain security.

Vendor: n/a

All 22 known CVE vulnerabilities affecting UPX with full Chinese analysis, references, and POCs where available.