CVE-2025-55188
LOW 3.6EPSS 0.7%
7-Zip before 25.01 does not always properly handle symbolic links during extraction.
- CVSS v3.1
- 3.6 LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N - EPSS
- 0.69% chance of exploitation in the next 30 days, 50th percentile
- Published
- 2025-08-08
- Updated
- 2025-11-04
Proof-of-concept exploits (3)
- https://lunbun.dev/blog/cve-2025-55188/
- hunters-sec/CVE-2025-55188-7z-exploit32★ · 2025-08-11
- lunbun/CVE-2025-5518810★ · 2026-05-04