CVE-2025-53817: 7-Zip

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

7-Zip is a file archiver with a high compression ratio. 7-Zip supports extracting from Compound Documents. Prior to version 25.0.0, a null pointer dereference in the Compound handler may lead to denial of service. Version 25.0.0 contains a fix cor the issue.

Affected products

  • 7-Zip 7-Zip: before 25.00 (fixed in 25.00)

Published 2025-07-17. Last modified 2026-06-17.