CVE-2025-44089

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

An issue in NCH Software ExpressZip v11.29 allows attackers to execute arbitrary code via downloading and executing a crafted archive file.

Published 2026-07-22. Last modified 2026-10-06.