CVE-2023-26088: Malwarebytes

High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.

In Malwarebytes before 4.5.23, a symbolic link may be used delete any arbitrary file on the system by exploiting the local quarantine system. It can also lead to privilege escalation in certain scenarios.

Affected products

Published 2023-03-23. Last modified 2026-06-17.