This summer, a WinRAR update closed a security vulnerability that allowed code smuggling. It is now being attacked.
CISA warns WinRAR CVE-2025-6218 is under active attack by multiple threat groups, requiring federal fixes by Dec. 30, 2025.