📦 7 Zip

by 7 Zip

🔍 What is 7 Zip?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-11002

HIGH CVSS 7.8 Jan 23, 2026

A directory traversal vulnerability in 7-Zip's ZIP file parsing allows remote attackers to execute arbitrary code by crafting malicious ZIP archives containing symbolic links. This affects all systems...

CVE-2025-11001

HIGH CVSS 7.8 Nov 19, 2025

This vulnerability in 7-Zip allows remote attackers to execute arbitrary code by exploiting directory traversal through specially crafted ZIP files containing symbolic links. Attackers can leverage th...

CVE-2025-53817

HIGH CVSS 7.5 Jul 17, 2025

A null pointer dereference vulnerability in 7-Zip's Compound Document handler allows attackers to cause denial of service by crashing the application when processing specially crafted archives. This a...

CVE-2025-0411

HIGH CVSS 7.0 Jan 25, 2025

This vulnerability allows attackers to bypass Windows' Mark-of-the-Web security feature when extracting files with 7-Zip. Attackers can craft malicious archives that, when extracted, don't inherit the...

CVE-2024-11477

HIGH CVSS 7.8 Nov 22, 2024

This vulnerability allows remote attackers to execute arbitrary code on systems running vulnerable versions of 7-Zip when processing malicious Zstandard-compressed files. The integer underflow during ...

CVE-2023-40481

HIGH CVSS 7.8 May 3, 2024

This vulnerability in 7-Zip allows remote attackers to execute arbitrary code by tricking users into opening malicious SquashFS (SQFS) archive files. The flaw is an out-of-bounds write during SQFS fil...

CVE-2023-31102

HIGH CVSS 7.8 Nov 3, 2023

This vulnerability in 7-Zip's PPMd7 compression module allows attackers to craft malicious 7Z archives that trigger an integer underflow, leading to invalid memory reads. Successful exploitation could...

CVE-2022-29072

HIGH CVSS 7.8 Apr 15, 2022

This vulnerability in 7-Zip allows attackers to execute arbitrary commands with elevated privileges when a malicious .7z file is dragged to the Help>Contents area. It affects Windows users running 7-Z...