CVE-2025-0411: 7-Zip Mark of the Web Bypass Vulnerability. 7-Zip contains
7-Zip Mark of the Web Bypass Vulnerability. 7-Zip contains a protection mechanism failure vulnerability that allows remote attackers to bypass the Mark-of-the-Web security feature to execute arbitrary code in the context of the current user.
- CISA KEV-listed (remediation due 2025-02-27)
- EPSS 46.7% (97.7% percentile)