Security researchers have discovered a flaw in WinRAR, a popular archiving program for Windows, that can execute commands by opening an archive. The vulnerability, tracked as CVE-2923-40477, allows attackers to use a specially crafted RAR archive to execute code upon opening the archive. RARLab has released WinRAR version 6.23 to fix the vulnerability. Users are advised to upgrade ASAP.