---
id: CVE-2025-8088
title: >-
  A path traversal vulnerability affecting the Windows version of WinRAR allows
  the attackers to execute arbitrary code by crafting malicious archive files
summary: "A path traversal vulnerability affecting the Windows version of WinRAR allows the attackers to execute arbitrary code by crafting malicious archive files. This vulnerability was exploited in the wild and was discovered by\_Anton Cherepano…"
severity: high
cvss: 8.8
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'
cwe:
  - CWE-35
vendor: rarlab
product: winrar
affected:
  - winrar < 7.13
  - dtsearch < 2023.01
patched:
  - winrar 7.13
  - dtsearch 2023.01
published: '2025-08-08'
updated: '2026-08-11'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-8088'
references:
  - url: >-
      https://www.win-rar.com/singlenewsview.html?&L=0&tx_ttnews%5Btt_news%5D=283&cHash=a64b4a8f662d3639dec8d65f47bc93c5
    label: security@eset.com
  - url: >-
      https://arstechnica.com/security/2025/08/high-severity-winrar-0-day-exploited-for-weeks-by-2-groups/
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://support.dtsearch.com/faq/dts0245.htm'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: >-
      https://www.vicarius.io/vsociety/posts/cve-2025-8088-detect-winrar-zero-day
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: >-
      https://www.vicarius.io/vsociety/posts/cve-2025-8088-mitigate-winrar-zero-day-using-srp-and-ifeo
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: >-
      https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-8088
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
  - url: >-
      https://www.welivesecurity.com/en/eset-research/update-winrar-tools-now-romcom-and-others-exploiting-zero-day-vulnerability/#the-discovery-of-cve-2025-8088
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
  - kev
  - in-the-wild
  - exploit-available
epss: 0.94051
epssPercentile: 0.99844
kev: true
kevDateAdded: '2025-08-12'
kevDueDate: '2025-09-02'
kevRansomware: true
exploited: true
ingestedAt: '2026-08-11T16:47:03.653Z'
exploits:
  github: 31
  githubRepos:
    - 'https://github.com/aldisakti2/CVE-2025-8088-BUILDER-Winrar-Tool'
    - 'https://github.com/jordan922/CVE-2025-8088'
    - 'https://github.com/travisbgreen/cve-2025-8088'
  checkedAt: '2026-09-25T08:20:46.709Z'
exploitAvailable: true
---

## Overview

A path traversal vulnerability affecting the Windows version of WinRAR allows the attackers to execute arbitrary code by crafting malicious archive files. This vulnerability was exploited in the wild and was discovered by Anton Cherepanov, Peter Košinár, and Peter Strýček
     from ESET.

## Affected

- `winrar < 7.13`
- `dtsearch < 2023.01`

## Remediation

Upgrade past the affected range:

- `winrar 7.13`
- `dtsearch 2023.01`
